Vulnerabilities (CVE)

Filtered by vendor Hpe Subscribe
Total 191 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-37095 1 Hpe 1 Storeonce System 2026-06-17 N/A 9.8 CRITICAL
A directory traversal information disclosure vulnerability exists in HPE StoreOnce Software.
CVE-2025-37094 1 Hpe 1 Storeonce System 2026-06-17 N/A 5.5 MEDIUM
A directory traversal arbitrary file deletion vulnerability exists in HPE StoreOnce Software.
CVE-2025-37093 1 Hpe 1 Storeonce System 2026-06-17 N/A 9.8 CRITICAL
An authentication bypass vulnerability exists in HPE StoreOnce Software.
CVE-2025-37092 1 Hpe 1 Storeonce System 2026-06-17 N/A 9.8 CRITICAL
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
CVE-2025-37091 1 Hpe 1 Storeonce System 2026-06-17 N/A 7.2 HIGH
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
CVE-2025-37090 1 Hpe 1 Storeonce System 2026-06-17 N/A 9.8 CRITICAL
A server-side request forgery vulnerability exists in HPE StoreOnce Software.
CVE-2025-37089 1 Hpe 1 Storeonce System 2026-06-17 N/A 9.8 CRITICAL
A command injection remote code execution vulnerability exists in HPE StoreOnce Software.
CVE-2025-27086 1 Hpe 1 Performance Cluster Manager 2026-06-17 N/A 8.1 HIGH
A vulnerability in the HPE Performance Cluster Manager (HPCM) GUI could allow an attacker to bypass authentication.
CVE-2024-53676 1 Hpe 1 Insight Remote Support 2026-06-17 N/A 9.8 CRITICAL
A directory traversal vulnerability in Hewlett Packard Enterprise Insight Remote Support may allow remote code execution.
CVE-2024-53675 1 Hpe 1 Insight Remote Support 2026-06-17 N/A 7.3 HIGH
An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases.
CVE-2024-53674 1 Hpe 1 Insight Remote Support 2026-06-17 N/A 7.3 HIGH
An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases.
CVE-2024-53673 1 Hpe 1 Insight Remote Support 2026-06-17 N/A 8.1 HIGH
A java deserialization vulnerability in HPE Remote Insight Support may allow an unauthenticated attacker to execute code.
CVE-2024-51770 1 Hpe 1 Autopass License Server 2026-06-17 N/A 7.5 HIGH
An information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.
CVE-2024-51769 1 Hpe 1 Autopass License Server 2026-06-17 N/A 7.5 HIGH
An information disclosure vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.
CVE-2024-51768 1 Hpe 1 Autopass License Server 2026-06-17 N/A 8.0 HIGH
An hsqldb-related remote code execution vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.
CVE-2024-51767 1 Hpe 1 Autopass License Server 2026-06-17 N/A 7.3 HIGH
An authentication bypass vulnerability exists in HPE AutoPass License Server (APLS) prior to 9.17.
CVE-2024-42508 1 Hpe 1 Oneview 2026-06-17 N/A 5.5 MEDIUM
This vulnerability could be exploited, leading to unauthorized disclosure of information to authenticated users.
CVE-2024-22441 1 Hpe 1 Cray Parallel Application Launch Service 2026-06-17 N/A 9.8 CRITICAL
HPE Cray Parallel Application Launch Service (PALS) is subject to an authentication bypass.
CVE-2024-11622 1 Hpe 1 Insight Remote Support 2026-06-17 N/A 7.3 HIGH
An XML external entity injection (XXE) vulnerability in HPE Insight Remote Support may allow remote users to disclose information in certain cases.
CVE-2023-50272 1 Hpe 4 Integrated Lights-out 5, Integrated Lights-out 5 Firmware, Integrated Lights-out 6 and 1 more 2026-06-17 N/A 7.5 HIGH
A potential security vulnerability has been identified in HPE Integrated Lights-Out 5 (iLO 5) and Integrated Lights-Out 6 (iLO 6). The vulnerability could be remotely exploited to allow authentication bypass.