NVD disclosure day

Published threat advisories for May 21, 2025

CVE advisoryCRITICAL

CVE-2025-34027

Versa Concerto RCE via Authentication Bypass and TOCTOU Write.

Halo Surface Signal: 5 out of 5 — more likely to be public-facing.

A critical vulnerability in the Versa Concerto SD-WAN orchestration platform allows unauthenticated attackers to achieve remote code execution by bypassing authentication in the Traefik reverse proxy and exploiting a race condition. This could allow attackers to execute arbitrary code on the platform.

CVE advisoryKnown Exploit

CVE-2025-34026

Versa Concerto: Authentication Bypass Risk

Halo Surface Signal: 4 out of 5 — likely to be public-facing.

The Versa Concerto SD-WAN orchestration platform contains an authentication bypass vulnerability. This allows unauthorized access to administrative functions and sensitive system information. The risk to affected organizations includes unauthorized data access and potential system compromise.

• CISA KEV

CVE advisoryKnown Exploit

CVE-2025-4008

Meteobridge Command Injection Vulnerability

Halo Surface Signal: 2 out of 5 — less likely to be public-facing.

A command injection vulnerability exists in the Meteobridge web interface, potentially allowing unauthenticated attackers to execute commands with elevated privileges on affected devices. This could lead to unauthorized system access and compromise of weather station data. The realistic business risk involves a loss of

• CISA KEV