CVE-2026-76734: medium-severity vulnerability in Hewlett Packard Enterprise (HPE) Instant ON
Unauthenticated Memory Corruption Vulnerability leads to Denial-of-Service in HPE Networking Instant On
Published · Updated
13Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackcvss 4.8epss 0.3%
exploitation probability
0.3%top 80% of all CVEs
observed exploitation
nono source reports it
A memory corruption vulnerability in the affected interface of HPE Networking Instant On could allow an unauthenticated remote attacker to conduct a denial of service attack. Successful exploitation could allow an attacker to interrupt the normal operation of the affected service and to access some limited information within the affected component.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:L
Affected products
Hewlett Packard Enterprise (HPE) · Instant ONRelated CVEs — Hewlett Packard Enterprise (HPE) Instant ON
In the same product, most dangerous first.
CVE-2026-76724CRITICALUnauthenticated Adjacent Command Injection Vulnerability in HPE Networking Instant ON APs Command Line Interface (CLI) Accessed by the PAPI ProtocolEPSS 1.0%CVE-2026-76727HIGHAuthenticated Command Injection Vulnerabilities in HPE Networking Instant ONEPSS 1.0%CVE-2026-76721CRITICALUnauthenticated Buffer Overflow Vulnerability leads to Remote Code Execution in HPE Networking Instant ON APsEPSS 0.6%CVE-2026-76722CRITICALUncontrolled Format String Vulnerabilities lead to Remote Code Execution or Denial-of-Service in HPE Networking Instant ON APsEPSS 0.5%CVE-2026-76728HIGHAuthenticated Server-Side Request Forgery Leading to Remote Code Execution in HPE Networking Instant ON APsEPSS 0.5%CVE-2026-76729MEDIUMAuthenticated Format String Vulnerability allows Memory Corruption in HPE Networking Instant ON API EndpointEPSS 0.4%