Description

A local privilege-escalation vulnerability has been discovered in the HPE Aruba Networking Virtual Intranet Access (VIA) client. Successful exploitation of this vulnerability could allow a local attacker to achieve arbitrary code execution with root privileges.

INFO

Published Date :

2026-01-13T20:16:33.606Z

Last Modified :

2026-03-02T17:39:27.669Z

Source :

hpe
AFFECTED PRODUCTS

The following products are affected by CVE-2025-37186 vulnerability.

Vendors Products
Hp
  • Aruba Virtual Intranet Access
Linux
  • Linux
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2025-37186.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact