Security Advisory

CVE-2025-37186

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-01-13 20:16:33
Last updated 2026-03-02 17:39:27
Assigner hpe
CVSS score 7.8
State PUBLISHED

Description

A local privilege-escalation vulnerability has been discovered in the HPE Aruba Networking Virtual Intranet Access (VIA) client. Successful exploitation of this vulnerability could allow a local attacker to achieve arbitrary code execution with root privileges.