Aviatrix VPN Client before 2.14.14 on Windows has an unquoted search path that enables local privilege escalation to the SYSTEM user, if the machine is misconfigured to allow unprivileged users to write to directories that are supposed to be restricted to administrators.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2021-04-29T00:03:56

Updated: 2021-04-29T00:03:56

Reserved: 2021-04-23T00:00:00


Link: CVE-2021-31776

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2021-04-29T01:15:08.083

Modified: 2021-05-13T14:17:54.987


Link: CVE-2021-31776

JSON object: View

cve-icon Redhat Information

No data.

CWE