Unrated severityCISA KEVNVD Advisory· Published Sep 13, 2021· Updated Oct 21, 2025
CVE-2021-40870
CVE-2021-40870
Description
An issue was discovered in Aviatrix Controller 6.x before 6.5-1804.1922. Unrestricted upload of a file with a dangerous type is possible, which allows an unauthenticated user to execute arbitrary code via directory traversal.
Affected products
1- Aviatrix/Aviatrix Controllerdescription
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- packetstormsecurity.com/files/164461/Aviatrix-Controller-6.x-Path-Traversal-Code-Execution.htmlmitrex_refsource_MISC
- docs.aviatrix.com/HowTos/UCC_Release_Notes.htmlmitrex_refsource_MISC
- wearetradecraft.com/advisories/tc-2021-0002/mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.