Vulnerabilities > Aviatrix > Controller > 4.3.1275

DATE CVE VULNERABILITY TITLE RISK
2025-01-08 CVE-2024-50603 OS Command Injection vulnerability in Aviatrix Controller
An issue was discovered in Aviatrix Controller before 7.1.4191 and 7.2.x before 7.2.4996.
network
low complexity
aviatrix CWE-78
critical
9.8
2020-05-22 CVE-2020-13417 Unspecified vulnerability in Aviatrix Controller and Gateway
An Elevation of Privilege issue was discovered in Aviatrix VPN Client before 2.10.7, because of an incomplete fix for CVE-2020-7224.
network
low complexity
aviatrix
critical
9.8
2020-05-22 CVE-2020-13416 Cross-Site Request Forgery (CSRF) vulnerability in Aviatrix Controller
An issue was discovered in Aviatrix Controller before 5.4.1066.
network
low complexity
aviatrix CWE-352
6.5
2020-05-22 CVE-2020-13415 Improper Verification of Cryptographic Signature vulnerability in Aviatrix Controller
An issue was discovered in Aviatrix Controller through 5.1.
network
low complexity
aviatrix CWE-347
7.5
2020-05-22 CVE-2020-13414 Use of Hard-coded Credentials vulnerability in Aviatrix Controller
An issue was discovered in Aviatrix Controller before 5.4.1204.
network
low complexity
aviatrix CWE-798
7.5
2020-05-22 CVE-2020-13413 Information Exposure Through Discrepancy vulnerability in Aviatrix Controller
An issue was discovered in Aviatrix Controller before 5.4.1204.
network
low complexity
aviatrix CWE-203
5.3
2020-05-22 CVE-2020-13412 Cross-Site Request Forgery (CSRF) vulnerability in Aviatrix Controller
An issue was discovered in Aviatrix Controller before 5.4.1204.
network
low complexity
aviatrix CWE-352
8.8