TGViewer
πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News @cibsecurity Β· 28.4K subscribers
Post #91035 886
πŸ–‹οΈ New CVSS 10.0 VeloCloud Orchestrator Flaw Actively Exploited in Certificate-Based Setups πŸ–‹οΈ

Attackers are exploiting a new flaw in onpremises VeloCloud Orchestrator VCO, the server that manages the Edge devices in a VeloCloud SDWAN, Arista said on September 22. The flaw, tracked as CVE202693952, may allow a remote attacker with no login access to privilege internal functions and affect the VCO host. Only orchestrators set up to authenticate their Edges with certificates are.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
More from @cibsecurity
  1. Oct 1, 2026πŸ“’ UK schools are getting better at dealing with cyber attacks πŸ“’ Most now say they can re…
  2. Oct 1, 2026πŸ“’ Vulnerability disclosures are rocketing, but AI is changing the types of flaw being dis…
  3. Oct 1, 2026πŸ“’ Vulnerability disclosures are rocketing, but AI is changing the types of flaw being dis…
  4. Oct 1, 2026🌊 18 Best Threat Hunting Tools in 2026: Enterprise Platforms, Open-Source & AI-Native πŸŒŠβ€¦
  5. Sep 28, 2026πŸ¦… Attack Surface Management in 2026: Why Point-in-Time Scans Can’t Keep Up With Cloud Spr…
  6. Sep 28, 2026🌊 UnderDefense Launches MAXI Service Desk, Delivering Direct Native Support for Enterpris…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook β†’Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 β†’