Wiz Research Identifies Exploitation in the Wild of Aviatrix Controller RCE (CVE-2024-50603)
ID: eaa17067-5905-5bf5-93dc-2594aacce860
STIX ID: report--eaa17067-5905-5bf5-93dc-2594aacce860
Feed Name: Wiz Blog
Wiz Research reports CVE-2024-50603, a critical unauthenticated command-injection RCE in Aviatrix Controller (CVSS 10.0), with public PoC and observed exploitation: attackers have deployed XMRig miners, Sliver backdoors, and attempted Mirai infections on vulnerable, publicly exposed controllers. The advisory lists affected versions, IOCs, and recommends immediate patching to versions 7.1.4191/7.2.4996, restricting public access, and proactive hunting for lateral movement and persistence artifacts in cloud environments.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
