Serial number: AV26-982
Date: October 1, 2026
As of September 29, 2026, Hewlett Packard Enterprise (HPE) is affected by vulnerabilities in the following products:
- Instant ON
- Prior to or equal to 3.4.1.0
- HPE Telco Service Orchestrator
- Prior to v5.7.1
- HPE Compute Scale-up Server 3200
- Prior to 1.77.30
- HPE Compute Scale-up Server 3250
- Prior to 1.03.38
- HPE Superdome Flex 280 Server
- Prior to 2.17.03
- HPE Superdome Flex Server
- Prior to 4.17.03
- HPE Unified OSS Console (UOC) UOC
- Prior to 3.1.22
The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available.
- HPESBNW05150 rev.1 - Multiple Vulnerabilities in HPE Networking Instant On APs
- HPESBNW05155 rev.1 - HPE Telco Service Orchestrator, Multiple Vulnerabilities
- HPESBNW05146 rev.1 - Multiple Vulnerabilities in HPE Unified OSS Console (UOC) and HPE Unified OSS Console Assurance Monitoring (UOCAM)
- HPESBHF05154 rev.1 - HPE Compute Scale-up Server 3200 and 3250 platforms and Superdome Flex server, Remote RMC file modification
- HPESBHF05153 rev.1 - HPE Compute Scale-up Server 3200 and 3250 platforms, Superdome Flex and Superdome Flex 280 servers, Remote Command Execution
- HPE Security Bulletin Library