HPE Networking Instant On 的 API 端点中存在缓冲区溢出漏洞,可能导致拥有管理员权限的已认证攻击者造成拒绝服务(DoS)。成功利用该漏洞可使攻击者中断受影响服务的正常运行,但该服务会在无需人工干预的情况下自动恢复。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | Instant ON | 0.0.0.0≤ 3.4.1.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Hewlett Packard Enterprise (HPE) | Instant ON | 0.0.0.0 ~ 3.4.1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-76721 | 9.8 CRITICAL | Unauthenticated Buffer Overflow Vulnerability leads to Remote Code Execution in HPE Networ |
| CVE-2026-76722 | 9.8 CRITICAL | Uncontrolled Format String Vulnerabilities lead to Remote Code Execution or Denial-of-Serv |
| CVE-2026-76723 | 9.6 CRITICAL | Unauthenticated Adjacent Buffer Overflow Vulnerabilities lead to Remote Code Execution in |
| CVE-2026-76725 | 9.6 CRITICAL | Authentication Bypass in a Management Protocol of HPE Networking Instant ON APs |
| CVE-2026-76724 | 9.6 CRITICAL | Unauthenticated Adjacent Command Injection Vulnerability in HPE Networking Instant ON APs |
| CVE-2026-76726 | 8.1 HIGH | Authentication Bypass Leading to Unauthorized Network Access in HPE Networking Instant ON |
| CVE-2026-76728 | 7.2 HIGH | Authenticated Server-Side Request Forgery Leading to Remote Code Execution in HPE Networki |
| CVE-2026-76727 | 7.2 HIGH | Authenticated Command Injection Vulnerabilities in HPE Networking Instant ON |
| CVE-2026-76729 | 6.6 MEDIUM | Authenticated Format String Vulnerability allows Memory Corruption in HPE Networking Insta |
| CVE-2026-76730 | 6.5 MEDIUM | Improper PAPI Packet handling leads to unauthorized access in HPE Networking Instant ON AP |
| CVE-2026-76731 | 6.5 MEDIUM | Authentication Bypass in the Captive Portal of HPE Networking Instant On |
| CVE-2026-76732 | 6.4 MEDIUM | Authenticated Local Privilege Escalation Vulnerability in a Daemon of HPE Networking Insta |
| CVE-2026-76733 | 4.9 MEDIUM | Authenticated Denial-of-Service Vulnerability in HPE Networking Instant On API Endpoint |
| CVE-2026-76734 | 4.8 MEDIUM | Unauthenticated Memory Corruption Vulnerability leads to Denial-of-Service in HPE Networki |
| CVE-2026-76735 | 4.1 MEDIUM | Authenticated Local Sensitive Information Disclosure in HPE Networking Instant On |
| CVE-2026-76736 | 3.3 LOW | Authenticated Local Buffer Overflow Vulnerability leads to Denial-of-Service in HPE Networ |
| CVE-2026-76737 | 3.0 LOW | Authenticated Local Path Traversal Vulnerability Leads to Denial-of-Service in HPE Network |
No comments yet