VMware Avi Load Balancer
- 32.1.1
- 31.1.1 - 31.2.2
- 30.1.1 - 30.2.6
- 22.1.1 - 22.1.7
A privilege escalation vulnerability has been identified in VMware Avi Load Balancer, allowing a malicious authenticated user with network access to execute remote code. This issue is present in versions 31.1.1 through 31.2.2, 30.1.1 through 30.2.6, and 22.1.1 through 22.1.7, with version 32.1.1 being the most recent vulnerable release.
Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing an authenticated user to execute code remotely on the affected system.
Users can upgrade to VMware Avi Load Balancer version 32.1.2, 31.2.2-2p3, or 30.2.7. For version 22.1.x, an upgrade to at least 30.2.7 is required.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.