Vulnerabilities > Aviatrix > VPN Client > 2.3.10

DATE CVE VULNERABILITY TITLE RISK
2021-04-29 CVE-2021-31776 Unquoted Search Path or Element vulnerability in Aviatrix VPN Client
Aviatrix VPN Client before 2.14.14 on Windows has an unquoted search path that enables local privilege escalation to the SYSTEM user, if the machine is misconfigured to allow unprivileged users to write to directories that are supposed to be restricted to administrators.
local
low complexity
aviatrix CWE-428
7.2
2020-05-22 CVE-2020-13417 Unspecified vulnerability in Aviatrix Controller, Gateway and VPN Client
An Elevation of Privilege issue was discovered in Aviatrix VPN Client before 2.10.7, because of an incomplete fix for CVE-2020-7224.
network
low complexity
aviatrix
7.5