HPE tells customers to patch OneView immediately as top-level security flaw spotted


  • HPE Fixes Critical RCE Vulnerability (CVE‑2025‑37164) in OneView Severity 10/10
  • Exploitation could allow attackers to reconfigure servers, deploy malware, or create permanent backdoors.
  • Users should upgrade to version 11.0 or apply the emergency fix immediately.

HPE has fixed a maximum severity vulnerability in its OneView platform that could cause a number of issues for enterprises.

HPE OneView is a centralized infrastructure management platform that allows administrators to deploy, monitor and manage HPE servers, storage and networks through a single software-defined interface. This product is critical in an enterprise environment as it provides centralized control over server hardware, firmware, storage and network configurations.

Leave a Comment