Join THREATCON1 in Reston, VA - September 21-22, 2025.
Register for Free
Products
Government
Resources
Community
Company
Partners
Sign In / Join
Sign In
Advisories
Versa Concerto Actuator Authentication Bypass Information Leak
Go Back
severity
critical
date
May 21, 2025
Affecting
Concerto <= 12.2.0
CVE
CVE-2025-34026
CVE type
Improper Authentication
CVSS
9.2
CVSS V4 Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:L/SC:H/SI:H/SA:L
References
Exploit
Credit
ProjectDiscovery, Harsh Jaiswal, Rahul Maini, Parth Malhotra
VulnCheck KEV
This advisory is in the VulnCheck KEV database