Vulnerability intelligence
CVE-2026-76722
Hewlett Packard Enterprise (HPE) Instant ON
Uncontrolled Format string vulnerabilities exist in the affected interface of HPE Networking Instant ON APs that could allow an unauthenticated remote attacker to run arbitrary commands on the underlying host. Successful exploitation could result in a Denial-of-service or potential remote code execution.
CVSS Score
9.8
Critical
EPSS — Exploit Probability
—
Awaiting FIRST.org data · checked 2026-09-30
Exploitation
Not in CISA KEV
KEV does not include every exploited vulnerability
Remediation
unknown
Check vendor advisories
1 article across 1 outlet · first covered Sep 30, 2026 · latest Sep 30, 2026
Coverage timeline
-
HPE Patches Critical Flaws Enabling Remote Code Execution in Wi-Fi Access Pointssecurityonline.info · Sep 30, 2026