CVE-2023-38401: Local Privilege Escalation in HPE Aruba Networking Virtual Intranet Access (VIA) Microsoft Windows Client
A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow local users to elevate privileges. Successful exploitation could allow execution of arbitrary code with NT AUTHORITY\SYSTEM privileges on the operating system.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2023-38401.
What is the title of this vulnerability?
The title of this vulnerability is 'A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow local users to elevate privileges'.
What is the severity of CVE-2023-38401?
The severity of CVE-2023-38401 is high with a severity value of 7.8.
Which software is affected by CVE-2023-38401?
The HPE Aruba Networking Virtual Intranet Access (VIA) client version up to 4.5.0 is affected by CVE-2023-38401.
How can the vulnerability be exploited?
The vulnerability can be exploited by local users to elevate privileges and execute arbitrary code with NT AUTHORITY\SYSTEM privileges on the operating system.