criticalZero-Day

Arista VeloCloud Orchestrator Zero-Day Command Injection

First seen Jul 28, 2026 · Updated Jul 28, 2026 · CVSS 9.8

zero-daycommand-injectionnetwork-infrastructureSD-WANactive-exploitationedge-deviceRCE

Arista disclosed and patched a maximum-severity command injection vulnerability in on-premises VeloCloud Orchestrator (VCO) deployments that has been actively exploited in the wild. Attackers can leverage the flaw to execute arbitrary commands on the orchestrator, potentially gaining control over SD-WAN management infrastructure. Organizations running on-premises VCO instances should patch immediately given confirmed exploitation.

Technical Analysis

The vulnerability is a command injection flaw in on-premises deployments of Arista's VeloCloud Orchestrator (VCO), the centralized management component for VeloCloud SD-WAN environments. Successful exploitation allows unauthenticated or low-privileged attackers to inject and execute arbitrary OS-level commands on the orchestrator server, likely leading to full host compromise, lateral movement into managed SD-WAN edge devices, and disruption of network traffic policies. The advisory confirms active in-the-wild exploitation, indicating threat actors have working exploit code prior to patch availability, consistent with true zero-day usage. No specific CVE ID was provided in the source data, and technical details on the exploitation chain (initial access vector, payload delivery) were not disclosed by Arista at time of reporting. If AI agent orchestration platforms or automated network-management agents rely on VeloCloud Orchestrator APIs for configuration or telemetry, a compromised orchestrator could allow attackers to manipulate agent-driven network policies, intercept credentials/API tokens used by agentic automation tools, or pivot into broader infrastructure hosting agent workloads.

Affected Systems

On-premises deployments of Arista (VeloCloud) VCO — Orchestrator software for SD-WAN management; cloud-hosted/SaaS VCO instances managed directly by Arista are reportedly not affected (per typical VMware/Arista advisory pattern for this product line); specific affected version ranges not disclosed in source data — administrators should consult Arista's official security advisory for exact version numbers.

Indicators of Compromise

  • Not disclosed in source reporting — no hashes, IPs, or domains provided. Organizations should monitor Arista's official advisory and threat intel feeds for IOC updates.

Remediation Steps

  1. 1

    Apply vendor patch immediately

    Update all on-premises VeloCloud Orchestrator deployments to the patched version released by Arista as soon as possible.

  2. 2

    Review exposure

    Identify all on-premises VCO instances exposed to the internet or accessible from untrusted networks and restrict access via firewall/ACLs.

  3. 3

    Audit for compromise

    Review orchestrator logs, admin account activity, and configuration changes for signs of unauthorized command execution or unusual admin sessions predating the patch.

  4. 4

    Rotate credentials

    Rotate API keys, admin credentials, and any tokens used by automation or agentic systems that interact with VCO, given potential exposure from command injection.

  5. 5

    Enable monitoring

    Deploy enhanced logging/EDR on orchestrator hosts and monitor for anomalous outbound connections or new processes consistent with post-exploitation activity.

Industries Most Exposed

telecommunicationsmanaged service providersenterprise networkingcritical infrastructurefinancial serviceshealthcare

Sources

Respond to this threat

Pro subscribers get a full AI-generated incident-response playbook for this threat — detection, containment, eradication, and recovery steps — plus an unlimited AI Threat Advisor for questions about your environment.