{ "schema_version": "1.4.0", "id": "GHSA-fc49-wm87-9q8m", "modified": "2022-05-24T17:02:42Z", "published": "2022-05-24T17:02:42Z", "aliases": [ "CVE-2019-17387" ], "details": "An authentication flaw in the AVPNC_RP service in Aviatrix VPN Client through 2.2.10 allows an attacker to gain elevated privileges through arbitrary code execution on Windows, Linux, and macOS.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2019-17387" }, { "type": "WEB", "url": "https://docs.aviatrix.com/HowTos/UCC_Release_Notes.html" }, { "type": "WEB", "url": "https://immersivelabs.com/2019/12/04/aviatrix-vpn-client-vulnerability" }, { "type": "WEB", "url": "https://immersivelabs.com/blog" } ], "database_specific": { "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2019-12-05T18:15:00Z" } }