High severity7.8NVD Advisory· Published Dec 5, 2019· Updated Jun 17, 2026
CVE-2019-17388
CVE-2019-17388
Description
Weak file permissions applied to the Aviatrix VPN Client through 2.2.10 installation directory on Windows and Linux allow a local attacker to execute arbitrary code by gaining elevated privileges through file modifications.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:aviatrix:vpn_client:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:aviatrix:vpn_client:*:*:*:*:*:*:*:*range: <=2.2.10
- (no CPE)range: <=2.2.10
- Aviatrix/VPN Clientdescription
Patches
Vulnerability mechanics
References
3- immersivelabs.com/2019/12/04/aviatrix-vpn-client-vulnerability/nvdExploitThird Party Advisory
- docs.aviatrix.com/HowTos/UCC_Release_Notes.htmlnvdRelease NotesVendor Advisory
- immersivelabs.com/blog/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.