Arista patches VeloCloud Orchestrator zero-day exploited in attacks
Summary
Arista has released a patch for a critical command injection vulnerability in their on-premises VeloCloud Orchestrator. This vulnerability, rated as maximum severity, is already being exploited in active attacks.
IFF Assessment
The discovery and active exploitation of a critical vulnerability represents bad news for defenders, as it provides an immediate attack vector.
Severity
A maximum severity command injection vulnerability that is actively exploited in attacks implies a high attack vector, high complexity, and high impact, leading to a CVSS score of 10.0.
Defender Context
Defenders need to prioritize patching their on-premises VeloCloud Orchestrator deployments immediately due to the active exploitation of this critical vulnerability. Monitoring network traffic for indicators of compromise related to command injection attacks on these systems is also crucial.