High severity7.1NVD Advisory· Published Aug 15, 2023· Updated Jun 17, 2026
CVE-2023-38402
CVE-2023-38402
Description
A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow malicious users to overwrite arbitrary files as NT AUTHORITY\SYSTEM. A successful exploit could allow these malicious users to create a Denial-of-Service (DoS) condition affecting the Microsoft Windows operating System boot process.
Affected products
4- cpe:2.3:a:hp:aruba_virtual_intranet_access:*:*:*:*:*:*:*:*Range: <4.5.0
- Hewlett Packard Enterprise (HPE)/HPE Aruba Networking Virtual Intranet Access (VIA)v5Range: HPE Aruba Networking Virtual Intranet Access (VIA) client for Microsoft Windows
Patches
Vulnerability mechanics
References
1- www.arubanetworks.com/assets/alert/ARUBA-PSA-2023-011.txtnvdVendor Advisory
News mentions
0No linked articles in our index yet.