7.8
CVE-2023-38401
- EPSS 0.12%
- Veröffentlicht 15.08.2023 19:15:10
- Zuletzt bearbeitet 21.11.2024 08:13:29
- Quelle security-alert@hpe.com
- CVE-Watchlists
- Unerledigt
Local Privilege Escalation in HPE Aruba Networking Virtual Intranet Access (VIA) Microsoft Windows Client
A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow local users to elevate privileges. Successful exploitation could allow execution of arbitrary code with NT AUTHORITY\SYSTEM privileges on the operating system.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Hp ≫ Aruba Virtual Intranet Access Version < 4.5.0
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.12% | 0.3 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| security-alert@hpe.com | 7.8 | 1.8 | 5.9 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|