First published: Tue Aug 15 2023(Updated: )
A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow local users to elevate privileges. Successful exploitation could allow execution of arbitrary code with NT AUTHORITY\SYSTEM privileges on the operating system.
Credit: security-alert@hpe.com security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hp Aruba Virtual Intranet Access | <4.5.0 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of this vulnerability is CVE-2023-38401.
The title of this vulnerability is 'A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow local users to elevate privileges'.
The severity of CVE-2023-38401 is high with a severity value of 7.8.
The HPE Aruba Networking Virtual Intranet Access (VIA) client version up to 4.5.0 is affected by CVE-2023-38401.
The vulnerability can be exploited by local users to elevate privileges and execute arbitrary code with NT AUTHORITY\SYSTEM privileges on the operating system.