Hackers exploit critical Aviatrix Controller RCE flaw in attacks
ID: 1f3b9aa2-e2ab-5db5-9b67-689983ef7109
STIX ID: report--1f3b9aa2-e2ab-5db5-9b67-689983ef7109
Feed Name: Bleeping Computer
Threat Score
Aviatrix Controller instances are affected by a critical unauthenticated RCE (CVE-2024-50603) that allows command injection via API actions; a public PoC has been published and threat actors have used the flaw to install Sliver backdoors and XMRig cryptominers. Aviatrix has released fixes (upgrade paths to 7.1.4191 or 7.2.4996) and recommends not exposing port 443 publicly and following Controller IP access guidelines to reduce risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
