CVE Vulnerabilities

CVE-2023-38401

Published: Aug 15, 2023 | Modified: Aug 23, 2023
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow local users to elevate privileges. Successful exploitation could allow execution of arbitrary code with NT AUTHORITYSYSTEM privileges on the operating system.

Affected Software

Name Vendor Start Version End Version
Aruba_virtual_intranet_access Hp * 4.5.0 (excluding)

References