#VU122035 Improper authentication in SD-WAN - CVE-2025-34026
Published: January 26, 2026
SD-WAN
Versa Networks
Description
The vulnerability allows a remote attacker to bypass authentication process.
The vulnerability exists due to missing authentication checks in the Traefik reverse proxy configuration. A remote non-authenticated attacker can bypass authentication process and gain unauthorized access to administrative endpoints. The vulnerability allows an attacker to obtain heap dumps and trace logs and use this information to compromise the affected system.