Product:

Controller

(Aviatrix)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 15
Date Id Summary Products Score Patch Annotated
2020-11-17 CVE-2020-26550 An issue was discovered in Aviatrix Controller before R5.3.1151. An encrypted file containing credentials to unrelated systems is protected by a three-character key. Controller 7.5
2020-11-17 CVE-2020-26552 An issue was discovered in Aviatrix Controller before R6.0.2483. Multiple executable files, that implement API endpoints, do not require a valid session ID for access. Controller 7.5
2020-11-17 CVE-2020-26551 An issue was discovered in Aviatrix Controller before R5.3.1151. Encrypted key values are stored in a readable file. Controller 7.5
2020-11-17 CVE-2020-26553 An issue was discovered in Aviatrix Controller before R6.0.2483. Several APIs contain functions that allow arbitrary files to be uploaded to the web tree. Controller 9.8
2021-04-21 CVE-2020-27568 Insecure File Permissions exist in Aviatrix Controller 5.3.1516. Several world writable files and directories were found in the controller resource. Note: All Aviatrix appliances are fully encrypted. This is an extra layer of security. Controller 7.5