CVE-2022-38368

An issue was discovered in Aviatrix Gateway before 6.6.5712 and 6.7.x before 6.7.1376. Because Gateway API functions mishandle authentication, an authenticated VPN user can inject arbitrary commands.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:aviatrix:gateway:*:*:*:*:*:*:*:*
cpe:2.3:a:aviatrix:gateway:*:*:*:*:*:*:*:*

Information

Published : 2022-08-15 15:15

Updated : 2022-08-16 10:14


NVD link : CVE-2022-38368

Mitre link : CVE-2022-38368


JSON object : View

CWE
CWE-287

Improper Authentication

Advertisement

dedicated server usa

Products Affected

aviatrix

  • gateway