Record summary

CVE-2022-37932 has a selected CVSS score of 8.8 (high); EIP currently links 1 repository PoC and 1 Nuclei template.

Description

A potential security vulnerability has been identified in Hewlett Packard Enterprise OfficeConnect 1820, 1850, and 1920S Network switches. The vulnerability could be remotely exploited to allow authentication bypass. HPE has made the following software updates to resolve the vulnerability in Hewlett Packard Enterprise OfficeConnect 1820, 1850 and 1920S Network switches versions: Prior to PT.02.14; Prior to PC.01.22; Prior to PO.01.21; Prior to PD.02.22;

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Sep 25, 2025 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Repository PoCs
1
Nuclei templates
1

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactTotal

CISA Coordinator · SSVC 2.0.3 · Evaluated Apr 24, 2025 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

Default status: unaffected

CVE ListPrior to PT.02.14; Prior to PC.01.22; Prior to PO.01.21; Prior to PD.02.22;affected

officeconnect_1820_j9979a_firmware

Browse hpe / officeconnect_1820_j9979a_firmware
VulnCheckVersion data not supplied

Proofs of concept

1

Repository PoCs

GitHubTim-Hoekstra/CVE-2022-37932Repository PoCby Tim-HoekstraStars: 2Not analyzed1 file

2.8 KiB

GitHub

PoC details

Nuclei templates

1
ProjectDiscoveryHIGHHP Switch - Authentication BypassCVSS 8.8

A potential security vulnerability has been identified in Hewlett Packard Enterprise OfficeConnect 1820, 1850, and 1920S Network switches. The vulnerability could be remotely exploited to allow authentication bypass. HPE has made the following software updates to resolve the vulnerability in Hewlett Packard Enterprise OfficeConnect 1820, 1850 and 1920S Network switches versions- Prior to PT.02.14; Prior to PC.01.22; Prior to PO.01.21; Prior to PD.02.22;

Impact

Attackers on the adjacent network can bypass authentication on HP OfficeConnect switches without credentials, potentially gaining administrative access to modify switch configurations, intercept network traffic, or disrupt network operations.

Remediation

Update to HPE OfficeConnect switch firmware version PT.02.14 or later for 1820 series, PC.01.22 or later for 1850 series, or PO.01.21/PD.02.22 or later for 1920S series.

AuthorsPhulelouch
Template tagscvecve2022hpofficeconnectauth-bypassintrusivevkevvuln
CVSS vector: CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:o:hpe:officeconnect_1820_j9979a_firmware:*:*:*:*:*:*:*:*
Shodan: html:"HPE OfficeConnect"

Source: ProjectDiscovery

References

2