<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>WildforTech Security Advisories — Hewlett Packard Enterprise (HPE)</title><description>Actively exploited vulnerabilities affecting Hewlett Packard Enterprise (HPE) products.</description><link>https://wildfortech.com</link><atom:link href="https://wildfortech.com/security/vendor/hewlett-packard-enterprise-hpe.xml" rel="self" type="application/rss+xml"/><item><title>CVE-2025-37164 — Hewlett Packard Enterprise (HPE) OneView Code Injection Vulnerability</title><link>https://wildfortech.com/security#CVE-2025-37164</link><guid isPermaLink="true">https://wildfortech.com/security#CVE-2025-37164</guid><description>HPE OneView, a data center infrastructure management platform, contains a code injection flaw that lets a remote attacker execute arbitrary code without any authentication. This means an attacker with network access to the management interface could fully compromise the platform — potentially gaining control over the servers, storage, and networking gear OneView manages. Because OneView sits at the heart of data center operations, a successful exploit could cascade into widespread infrastructure compromise.</description><pubDate>Wed, 07 Jan 2026 00:00:00 GMT</pubDate><category>Hewlett Packard Enterprise (HPE)</category><category>OneView</category></item></channel></rss>