logo

Hackers exploit critical Aviatrix Controller RCE flaw in attacks

ID: 1f3b9aa2-e2ab-5db5-9b67-689983ef7109

STIX ID: report--1f3b9aa2-e2ab-5db5-9b67-689983ef7109

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2025-01-13

Date Updated: 2026-03-27

Author: Bill Toulas

...
...

Aviatrix Controller instances are affected by a critical unauthenticated RCE (CVE-2024-50603) that allows command injection via API actions; a public PoC has been published and threat actors have used the flaw to install Sliver backdoors and XMRig cryptominers. Aviatrix has released fixes (upgrade paths to 7.1.4191 or 7.2.4996) and recommends not exposing port 443 publicly and following Controller IP access guidelines to reduce risk.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.