Arista patches VeloCloud Orchestrator zero-day exploited in attacks

Summary

Arista has released a patch for a critical command injection vulnerability in their on-premises VeloCloud Orchestrator. This vulnerability, rated as maximum severity, is already being exploited in active attacks.

IFF Assessment

FOE

The discovery and active exploitation of a critical vulnerability represents bad news for defenders, as it provides an immediate attack vector.

Severity

10.0 Critical (AI Estimated)

A maximum severity command injection vulnerability that is actively exploited in attacks implies a high attack vector, high complexity, and high impact, leading to a CVSS score of 10.0.

Defender Context

Defenders need to prioritize patching their on-premises VeloCloud Orchestrator deployments immediately due to the active exploitation of this critical vulnerability. Monitoring network traffic for indicators of compromise related to command injection attacks on these systems is also crucial.

Read Full Story →