A vulnerability in the HPE Aruba Networking Virtual Intranet Access (VIA) client could allow malicious users to overwrite arbitrary files as NT AUTHORITY\SYSTEM (root). A successful exploit could allow the creation of a Denial-of-Service (DoS) condition affecting the Microsoft Windows Operating System. This vulnerability does not affect Linux and Android based clients.
References
Configurations
No configuration.
History
03 Apr 2025, 18:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-732 | |
Summary |
|
01 Apr 2025, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-04-01 17:15
Updated : 2025-04-03 18:15
NVD link : CVE-2025-25041
Mitre link : CVE-2025-25041
CVE.ORG link : CVE-2025-25041
JSON object : View
Products Affected
No product.
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource