Discussion about this post

User's avatar
Neural Foundry's avatar

Solid piece on how CVE-2025-37164 exposes entire datacenter infrastructures through HPE OneView. What really stood out to me is the contrast between that 10.0 CVSS score and a 15-year-old PowerPoint bug getting added together, it shows how much legacy tech is still actively abused. The piece about CISA requiring private orgs to treat these as high priority is critcal given that most shops I've worked in don't audit OneView deployments nearly enough. Real question is wether orgs will actually inventory which systems are exposed or just wait for an incident to force the issue.

Expand full comment

No posts

Ready for more?