HPE security advisory (AV26-982)
Canadian Cyber Centre advisory AV26-982 relays HPE bulletins covering multiple vulnerabilities, including remote command execution, across servers and networking products.
The Canadian Centre for Cyber Security advisory AV26-982 lists HPE products affected as of September 29, 2026, including Instant ON up to 3.4.1.0, Telco Service Orchestrator prior to v5.7.1, Compute Scale-up Server 3200/3250, Superdome Flex and Flex 280, and Unified OSS Console prior to 3.1.22. Referenced HPE bulletins include remote command execution and remote RMC file modification on the server platforms. Administrators are encouraged to review the linked HPE bulletins and apply updates as they become available.
- Covers Instant ON, Telco Service Orchestrator, Scale-up 3200/3250, Superdome Flex, UOC
- Includes remote command execution bulletins for server platforms
- Users urged to review HPE bulletins and patch
Full article184 words · extracted from cyber.gc.ca · click to collapse
Serial number: AV26-982
Date: October 1, 2026
As of September 29, 2026, Hewlett Packard Enterprise (HPE) is affected by vulnerabilities in the following products:
- Instant ON
- Prior to or equal to 3.4.1.0
- HPE Telco Service Orchestrator
- Prior to v5.7.1
- HPE Compute Scale-up Server 3200
- Prior to 1.77.30
- HPE Compute Scale-up Server 3250
- Prior to 1.03.38
- HPE Superdome Flex 280 Server
- Prior to 2.17.03
- HPE Superdome Flex Server
- Prior to 4.17.03
- HPE Unified OSS Console (UOC) UOC
- Prior to 3.1.22
The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary updates as they become available.
- HPESBNW05150 rev.1 - Multiple Vulnerabilities in HPE Networking Instant On APs
- HPESBNW05155 rev.1 - HPE Telco Service Orchestrator, Multiple Vulnerabilities
- HPESBNW05146 rev.1 - Multiple Vulnerabilities in HPE Unified OSS Console (UOC) and HPE Unified OSS Console Assurance Monitoring (UOCAM)
- HPESBHF05154 rev.1 - HPE Compute Scale-up Server 3200 and 3250 platforms and Superdome Flex server, Remote RMC file modification
- HPESBHF05153 rev.1 - HPE Compute Scale-up Server 3200 and 3250 platforms, Superdome Flex and Superdome Flex 280 servers, Remote Command Execution
- HPE Security Bulletin Library
Text extracted automatically; images, tables and formatting may be missing. Original: https://cyber.gc.ca/en/alerts-advisories/hpe-security-advisory-av26-982