VulnSea

instant_on vulnerabilities

CVEs whose affected-version data names the instant_on package. Each record lists the affected and patched versions; check a specific version with the dependency checker or POST /api/sbom.

18 CVEsRSS

CVE-2026-76736Low· 3.3
today

A buffer overflow vulnerability exists in the underlying operating system of HPE Networking Instant On

A buffer overflow vulnerability exists in the underlying operating system of HPE Networking Instant On. Successful exploitation could allow a low-privilege authenticated local attacker to interrupt the normal operation of the affected se…

▾ SunlitHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76721Critical· 9.8
today

Buffer overflow vulnerability exists in the affected interface of HPE Networking Instant ON that could allow an unauthenticated remote attacker to run arbitrary code on the underlying host

Buffer overflow vulnerability exists in the affected interface of HPE Networking Instant ON that could allow an unauthenticated remote attacker to run arbitrary code on the underlying host. Successful exploitation could allow an attacker…

▾ MidnightHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76725Critical· 9.6
today

A vulnerability has been identified in a management protocol of HPE Networking Instant ON APs that could allow an unauthenticated adjacent attacker to circumvent existing authentication controls

A vulnerability has been identified in a management protocol of HPE Networking Instant ON APs that could allow an unauthenticated adjacent attacker to circumvent existing authentication controls. Successful exploitation could result in a…

▾ MidnightHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76723Critical· 9.6
today

Buffer overflow vulnerabilities exist in the affected interface of HPE Networking Instant ON APS that could allow an unauthenticated adjacent attacker to achieve remote code execution

Buffer overflow vulnerabilities exist in the affected interface of HPE Networking Instant ON APS that could allow an unauthenticated adjacent attacker to achieve remote code execution. Successful exploitation could allow an attacker to e…

▾ MidnightHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76722Critical· 9.8
today

Uncontrolled Format string vulnerabilities exist in the affected interface of HPE Networking Instant ON APs that could allow an unauthenticated remote attacker to run arbitrary commands on the underlying host

Uncontrolled Format string vulnerabilities exist in the affected interface of HPE Networking Instant ON APs that could allow an unauthenticated remote attacker to run arbitrary commands on the underlying host. Successful exploitation cou…

▾ MidnightHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76728High· 7.2
today

A vulnerability in the API endpoint of HPE Networking Instant ON APs could allow an authenticated remote attacker with high privileges to conduct a server-side request forgery (SSRF) attack

A vulnerability in the API endpoint of HPE Networking Instant ON APs could allow an authenticated remote attacker with high privileges to conduct a server-side request forgery (SSRF) attack. Successful exploitation could allow an attacke…

▾ TwilightHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76727High· 7.2
today

Command injection vulnerabilities exist in the affected interface of HPE Networking Instant ON that could allow an authenticated remote attacker with high privileges to perform command injection

Command injection vulnerabilities exist in the affected interface of HPE Networking Instant ON that could allow an authenticated remote attacker with high privileges to perform command injection. Successful exploitation could allow an at…

▾ TwilightHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76724Critical· 9.6
today

A command injection vulnerability exists in CLI of the affected HPE Networking Instant ON APs that could allow an unauthenticated adjacent attacker to perform command injection by sending specially crafted packets

A command injection vulnerability exists in CLI of the affected HPE Networking Instant ON APs that could allow an unauthenticated adjacent attacker to perform command injection by sending specially crafted packets. Successful exploitatio…

▾ MidnightHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76735Medium· 4.1
today

A sensitive information disclosure vulnerability exists in the underlying operating system of HPE Networking Instant On

A sensitive information disclosure vulnerability exists in the underlying operating system of HPE Networking Instant On. Successful exploitation could allow an authenticated local attacker with high privileges to retrieve information whi…

▾ SunlitHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76729Medium· 6.6
today

A format string vulnerability in the API endpoint of HPE Networking Instant ON APs could allow an authenticated remote attacker with high privileges to cause memory corruption with a modified input

A format string vulnerability in the API endpoint of HPE Networking Instant ON APs could allow an authenticated remote attacker with high privileges to cause memory corruption with a modified input. Successful exploitation could allow an…

▾ SunlitHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76726High· 8.1
today

An authentication bypass vulnerability in the API endpoint of HPE Networking Instant ON could allow an unauthenticated remote attacker to bypass network access controls if certain preconditions outside of the attacker's control are met

An authentication bypass vulnerability in the API endpoint of HPE Networking Instant ON could allow an unauthenticated remote attacker to bypass network access controls if certain preconditions outside of the attacker's control are met. …

▾ TwilightHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76732Medium· 6.4
today

A local privilege-escalation vulnerability has been discovered in the affected daemon of HPE Networking Instant ON

A local privilege-escalation vulnerability has been discovered in the affected daemon of HPE Networking Instant ON. Successful exploitation of this vulnerability could allow a local attacker to achieve arbitrary code execution with root …

▾ SunlitHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76730Medium· 6.5
today

An authentication bypass vulnerability exists in the PAPI protocol of HPE Networking Instant ON APs that could allow an unauthenticated adjacent attacker to circumvent existing authentication controls

An authentication bypass vulnerability exists in the PAPI protocol of HPE Networking Instant ON APs that could allow an unauthenticated adjacent attacker to circumvent existing authentication controls. Successful exploitation could allow…

▾ SunlitHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76733Medium· 4.9
today

A denial-of-service vulnerability exists in the API endpoint of HPE Networking Instant On that could allow an authenticated attacker with administrative privileges to cause a denial of service

A denial-of-service vulnerability exists in the API endpoint of HPE Networking Instant On that could allow an authenticated attacker with administrative privileges to cause a denial of service. Successful exploitation could allow an atta…

▾ SunlitHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76731Medium· 6.5
today

An authentication bypass vulnerability in the captive portal of HPE Networking Instant On could allow an unauthenticated remote attacker to circumvent existing authentication controls

An authentication bypass vulnerability in the captive portal of HPE Networking Instant On could allow an unauthenticated remote attacker to circumvent existing authentication controls. Successful exploitation could allow an attacker to g…

▾ SunlitHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76738Low· 2.7
today

A buffer overflow vulnerability exists in the API endpoint of HPE Networking Instant On that could allow an authenticated attacker with administrative privileges to cause a denial of service

A buffer overflow vulnerability exists in the API endpoint of HPE Networking Instant On that could allow an authenticated attacker with administrative privileges to cause a denial of service. Successful exploitation could allow an attack…

▾ SunlitHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76734Medium· 4.8
today

A memory corruption vulnerability in the affected interface of HPE Networking Instant On could allow an unauthenticated remote attacker to conduct a denial of service attack

A memory corruption vulnerability in the affected interface of HPE Networking Instant On could allow an unauthenticated remote attacker to conduct a denial of service attack. Successful exploitation could allow an attacker to interrupt t…

▾ SunlitHewlett Packard Enterprise (HPE) · Instant ONvia NVD
CVE-2026-76737Low· 3.0
today

An authenticated path traversal vulnerability exists in the command line interface of HPE Networking Instant On

An authenticated path traversal vulnerability exists in the command line interface of HPE Networking Instant On. Successful exploitation could allow an attacker with administrative access to modify a limited set of files on the underlyin…

▾ SunlitHewlett Packard Enterprise (HPE) · Instant ONvia NVD
instant_on vulnerabilities (CVEs) · VulnSea