Loading
Aviatrix VPN Client before 2.14.14 on Windows has an unquoted search path that enables local privilege escalation to the SYSTEM user, if the machine is misconfigured to allow unprivileged users to write to directories that are supposed to be restricted to administrators.
Use CWE-428, Aviatrix vendor hub and Vpn Client product page to widen CVE-2021-31776 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2020-13417, CVE-2019-17388 and CVE-2019-17387 for nearby disclosures in the same product family.