NA

CVE-2022-38368

Published: 15/08/2022 Updated: 16/08/2022
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

An issue exists in Aviatrix Gateway prior to 6.6.5712 and 6.7.x prior to 6.7.1376. Because Gateway API functions mishandle authentication, an authenticated VPN user can inject arbitrary commands.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

aviatrix gateway