Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Weak file permissions applied to the Aviatrix VPN Client through 2.2.10 installation directory on Windows and Linux allow a local attacker to execute arbitrary code by gaining elevated privileges through file modifications.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Aviatrix VPN Client 安全漏洞
Vulnerability Description
Aviatrix VPN Client是一款提供SAML身份验证的VPN(虚拟私人网络)客户端应用程序。 Aviatrix VPN Client 2.2.10及之前版本(Windows和Linux)中存在安全漏洞,该漏洞源于程序为安装路径分配了较弱的文件权限。本地攻击者可通过修改文件利用该漏洞获取提升的权限,执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A