CVE-2020-26548: Aviatrix Controller

High severity, CVSS 8.8. EPSS: 1.5% chance of exploitation in the next 30 days.

An issue was discovered in Aviatrix Controller before R5.4.1290. There is an insecure sudo rule: a user exists that can execute all commands as any user on the system.

Affected products

  • Aviatrix Controller: version 5.3.1516 only

Published 2020-11-17. Last modified 2026-06-17.