Weak File Permission in Aviatrix VPN Client allows Arbitrary Code Execution
CVE-2019-17388
7.8HIGH
What is CVE-2019-17388?
The Aviatrix VPN Client has been found to have weak file permissions in its installation directory on both Windows and Linux platforms. This flaw enables a local attacker to manipulate files, potentially allowing them to execute arbitrary code by gaining elevated privileges. Such vulnerabilities highlight the importance of implementing stringent permission controls to safeguard sensitive applications from unauthorized access and exploits.