A critical vulnerability in Aviatrix Controller is actively exploited to deploy backdoors and cryptocurrency miners in the wild.
The vulnerability, tracked as CVE-2024-50603, allows unauthenticated attackers to execute arbitrary code via improper command neutralization in the API.
Threat actors are actively exploiting the flaw to deploy backdoors and cryptocurrency miners.
The vulnerability has been patched in versions 7.1.4191 and 7.2.4996, and organizations are urged to patch urgently.