Go back

Versa Concerto Actuator Authentication Bypass Information Leak

severity
critical
date
Affecting
  • Concerto <= 12.2.0

CVE
CVE-2025-34026
CVE type
Improper Authentication
CVSS
9.2
CVSS V4 Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:L/SC:H/SI:H/SA:L
References
Credit
ProjectDiscovery, Harsh Jaiswal, Rahul Maini, Parth Malhotra