Discussion

Attackers Exploit Arista VeloCloud Orchestrator Command Injection Flaw

Started by The Hacker News · 28 Jul 2026 08:33 · 4 Views · 0 Replies
Thread Starter #0
A maximum-severity security flaw impacting on-premises versions of Arista VeloCloud Orchestrator (VCO) has come under active exploitation in the wild.

The vulnerability, tracked as CVE-2026-16812 (CVSS score: 10.0), is a case of operating system command injection that could pave the way for arbitrary code execution.

"VeloCloud Orchestrator (VCO) on-prem has a security issue where this issue

Okumaya devam et...

You must be logged in to reply.

0 quotes selected