logo

Wiz Research Identifies Exploitation in the Wild of Aviatrix Controller RCE (CVE-2024-50603)

ID: eaa17067-5905-5bf5-93dc-2594aacce860

STIX ID: report--eaa17067-5905-5bf5-93dc-2594aacce860

Feed Name: Wiz Blog

Threat Score
85/100

Date Published: 2025-01-11

Date Updated: 2026-05-01

...
...

Wiz Research reports CVE-2024-50603, a critical unauthenticated command-injection RCE in Aviatrix Controller (CVSS 10.0), with public PoC and observed exploitation: attackers have deployed XMRig miners, Sliver backdoors, and attempted Mirai infections on vulnerable, publicly exposed controllers. The advisory lists affected versions, IOCs, and recommends immediate patching to versions 7.1.4191/7.2.4996, restricting public access, and proactive hunting for lateral movement and persistence artifacts in cloud environments.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.