CVE-2021-31776

Aviatrix VPN Client before 2.14.14 on Windows has an unquoted search path that enables local privilege escalation to the SYSTEM user, if the machine is misconfigured to allow unprivileged users to write to directories that are supposed to be restricted to administrators.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:aviatrix:vpn_client:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

13 May 2021, 14:17

Type Values Removed Values Added
References (MISC) https://docs.aviatrix.com/Downloads/samlclient.html - (MISC) https://docs.aviatrix.com/Downloads/samlclient.html - Product, Vendor Advisory
References (MISC) https://docs.aviatrix.com/Downloads/samlclient.html#windows-win - (MISC) https://docs.aviatrix.com/Downloads/samlclient.html#windows-win - Product, Vendor Advisory
References (CONFIRM) https://docs.aviatrix.com/HowTos/changelog.html#aviatrix-vpn-client-changelog - (CONFIRM) https://docs.aviatrix.com/HowTos/changelog.html#aviatrix-vpn-client-changelog - Release Notes, Vendor Advisory
CWE CWE-428
CPE cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
cpe:2.3:a:aviatrix:vpn_client:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 7.2
v3 : 7.8

29 Apr 2021, 01:15

Type Values Removed Values Added
New CVE

Information

Published : 2021-04-29 01:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-31776

Mitre link : CVE-2021-31776

CVE.ORG link : CVE-2021-31776


JSON object : View

Products Affected

microsoft

  • windows

aviatrix

  • vpn_client
CWE
CWE-428

Unquoted Search Path or Element