SECURITYBLEEPING COMPUTER
Arista patches VeloCloud Orchestrator zero-day exploited in attacks
Arista has released a patch for a maximum-severity command injection vulnerability in its on-premises VeloCloud Orchestrator deployments, which is currently being exploited in cyber attacks. The vulnerability, classified as a zero-day, allows attackers to execute arbitrary commands, prompting urgent remediation actions.
Mentioned
Related Signal
Adjacent reporting
- A critical Palo Alto PAN-OS zero-day is being exploited in the wild
- Palo Alto Networks firewall zero-day exploited for nearly a month
- Palo Alto Networks warns of firewall RCE zero-day exploited in attacks
- Ivanti customers confront yet another actively exploited zero-day
- New Linux 'Dirty Frag' zero-day gives root on all major distros
- SonicWall customers under threat as attackers exploit 2 zero-days