Security
Loading…

CVE-2025-34026

UNKNOWNKnown Exploited
Description

Versa Concerto SD-WAN orchestration platform contains an improper authentication vulnerability in the Traefik reverse proxy configuration, allowing at attacker to access administrative endpoints. The internal Actuator endpoint can be leveraged for access to heap dumps and trace logs.

Timeline
Published:January 22nd, 2026 12:00 AM
Last modified:January 22nd, 2026 12:00 AM
Added to KEV:January 22nd, 2026
CVSS Scoring

No CVSS v3 score available

Affected Software
From NVD CPE configuration data

Vendors

Versa

Products

Concerto
Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

No references available.

Source: CISA KEV + NVD · Data may lag official sources by up to one minute