logo

Versa Concerto SD-WAN Authentication Bypass

ID: ace6fd53-3f04-5d52-a47a-f347ed5d8ece

STIX ID: report--ace6fd53-3f04-5d52-a47a-f347ed5d8ece

Feed Name: FortiGuard Labs | FortiGuard Center - Outbreak Alerts

Threat Score
90/100

Date Published: 2026-02-03

Date Updated: 2026-07-28

...
...

Multiple critical vulnerabilities in the Versa Concerto SD‑WAN/SASE orchestration platform (CVE-2025-34025/34026/34027) allow Traefik authentication bypasses, arbitrary file writes and package uploads, remote code execution, and Docker container escape to host-level compromise; one of the flaws (CVE-2025-34026) is listed in the CISA Known Exploited Vulnerabilities Catalog. Organizations are advised to apply vendor patches, restrict access to orchestration interfaces, and implement network segmentation and strict administrative controls.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.