CVE-2020-27568: High severity aviatrix controllers vulnerability
Insecure File Permissions exist in Aviatrix Controller 5.3.1516. Several world writable files and directories were found in the controller resource. Note: All Aviatrix appliances are fully encrypted. This is an extra layer of security.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this insecure file permissions vulnerability?
The vulnerability ID for this insecure file permissions vulnerability is CVE-2020-27568.
What is the severity of CVE-2020-27568?
The severity of CVE-2020-27568 is high (7.5).
What software version of Aviatrix Controller is affected by CVE-2020-27568?
Aviatrix Controller version 5.3.1516 is affected by CVE-2020-27568.
What is the impact of CVE-2020-27568?
CVE-2020-27568 allows unauthorized modification of critical files and directories, potentially leading to unauthorized access, data leakage, and system compromise.
How can I fix CVE-2020-27568?
To fix CVE-2020-27568, it is recommended to apply the latest security patches provided by Aviatrix or upgrade to a patched version of Aviatrix Controller.