VMware Avi Load Balancer
- 32.1.1
- 31.1.1 - 31.2.2
- 30.1.1 - 30.2.6
- 22.1.1 - 22.1.7
A remote code execution vulnerability exists in VMware Avi Load Balancer. This issue allows a malicious authenticated user with network access to inject and execute code. The vulnerability is present in versions 31.1.1 through 31.2.2, 30.1.1 through 30.2.6, and 22.1.1 through 22.1.7, with version 32.1.1 being the most recent vulnerable release.
Exploitation of this vulnerability allows for remote code execution on the affected system.
Users can upgrade to VMware Avi Load Balancer versions 32.1.2, 31.2.2-2p3, or 30.2.7. For version 22.1.x, an upgrade to at least 30.2.7 is required.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.