Vulnerabilities > Aviatrix > Critical

DATE CVE VULNERABILITY TITLE RISK
2021-09-13 CVE-2021-40870 Relative Path Traversal vulnerability in Aviatrix Controller
An issue was discovered in Aviatrix Controller 6.x before 6.5-1804.1922.
network
low complexity
aviatrix CWE-23
critical
9.8
2020-11-17 CVE-2020-26553 Unrestricted Upload of File with Dangerous Type vulnerability in Aviatrix Controller 5.3.1516
An issue was discovered in Aviatrix Controller before R6.0.2483.
network
low complexity
aviatrix CWE-434
critical
9.8
2020-05-22 CVE-2020-13417 Unspecified vulnerability in Aviatrix Controller and Gateway
An Elevation of Privilege issue was discovered in Aviatrix VPN Client before 2.10.7, because of an incomplete fix for CVE-2020-7224.
network
low complexity
aviatrix
critical
9.8
2020-04-16 CVE-2020-7224 Unspecified vulnerability in Aviatrix Openvpn
The Aviatrix OpenVPN client through 2.5.7 on Linux, macOS, and Windows is vulnerable when OpenSSL parameters are altered from the issued value set; the parameters could allow unauthorized third-party libraries to load.
network
low complexity
aviatrix
critical
9.8