Vulnerabilities Critical HPE AOS-CX Vulnerability Allows Admin Password Resets The vulnerability can be exploited remotely, without authentication, to circumvent existing authentication controls. Ionut ArghireMarch 14, 2026
Vulnerabilities Critical HPE OneView Vulnerability Exploited in Attacks The maximum-severity code injection flaw can be exploited without authentication for remote code execution. Ionut ArghireJanuary 8, 2026
Vulnerabilities HPE Patches Critical Flaw in IT Infrastructure Management Software Tracked as CVE-2025-37164, the critical flaw could allow unauthenticated, remote attackers to execute arbitrary code. Ionut ArghireDecember 18, 2025
Data Breaches HPE Says Personal Information Stolen in 2023 Russian Hack HPE is notifying an unknown number of individuals that Russian hackers accessed their personal information in a December 2023 attack. Ionut ArghireFebruary 10, 2025
Data Breaches HPE Investigating Breach Claims After Hacker Offers to Sell Data HPE is investigating claims by the hacker IntelBroker, who is offering to sell source code and other data allegedly stolen from the tech giant. Eduard KovacsJanuary 20, 2025
Vulnerabilities Dell, HPE, MediaTek Patch Vulnerabilities in Their Products MediaTek, HPE and Dell release advisories to inform customers about potentially serious vulnerabilities found and patched in their products. Ionut ArghireJanuary 7, 2025
Network Security HPE Patches Critical Vulnerabilities in Aruba Access Points HPE this week warned of two critical vulnerabilities in Aruba Networking access points that could lead to unauthenticated command injection. Ionut ArghireNovember 8, 2024
Email Security HPE Says Russian Government Hackers Had Access to Emails for 6 Months HPE told the SEC that Russian state-sponsored threat group Midnight Blizzard had access to an email system for several months. Eduard KovacsJanuary 25, 2024