CVE-2021-31776

Aviatrix VPN Client before 2.14.14 on Windows has an unquoted search path that enables local privilege escalation to the SYSTEM user, if the machine is misconfigured to allow unprivileged users to write to directories that are supposed to be restricted to administrators.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:aviatrix:vpn_client:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

Information

Published : 2021-04-28 18:15

Updated : 2021-05-13 07:17


NVD link : CVE-2021-31776

Mitre link : CVE-2021-31776


JSON object : View

CWE
CWE-428

Unquoted Search Path or Element

Advertisement

dedicated server usa

Products Affected

aviatrix

  • vpn_client

microsoft

  • windows