CVE-2023-38401

A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow local users to elevate privileges. Successful exploitation could allow execution of arbitrary code with NT AUTHORITY\SYSTEM privileges on the operating system.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:hp:aruba_virtual_intranet_access:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

23 Aug 2023, 16:50

Type Values Removed Values Added
References (MISC) https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-011.txt - (MISC) https://www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-011.txt - Vendor Advisory
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:hp:aruba_virtual_intranet_access:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
CWE NVD-CWE-noinfo
First Time Hp
Microsoft windows
Microsoft
Hp aruba Virtual Intranet Access

15 Aug 2023, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-08-15 19:15

Updated : 2023-08-23 16:50


NVD link : CVE-2023-38401

Mitre link : CVE-2023-38401


JSON object : View

Products Affected

hp

  • aruba_virtual_intranet_access

microsoft

  • windows