Versa Known Exploited Vulnerabilities

Evidence-backed KEV intelligence for Versa products — CISA KEV status, confidence, sensor telemetry, and virtual-patch availability.

Total KEVs

3

In CISA KEV

2

Beyond CISA KEV

1

Sensor Observed

0

Virtual Patch Available

0

Versa KEVs Added by Year

Loading...

3 Versa KEVs added all time (primary attestation date).

Attested CVEs

CVE Confidence CISA KEV Added
CVE-2025-34027

Versa Concerto Authentication Bypass File Write Remote Code Execution

High Not in CISA 01 Aug 2025
CVE-2025-34026

Versa Concerto Actuator Authentication Bypass Information Leak

Confirmed In CISA 01 Jun 2026
CVE-2024-39717

The Versa Director GUI provides an option to customize the look and feel of the user interface. This option is only available for a user logged...

Confirmed In CISA 23 Aug 2024

Common Vulnerability Classes (CWE)

  • CWE-288 — Authentication Bypass Using an Alternate Path or Channel 1
  • CWE-367 — Time-of-check Time-of-use (TOCTOU) Race Condition 1
  • CWE-434 — Unrestricted Upload of File with Dangerous Type 1

Browse all known exploited vulnerabilities · What is a known exploited vulnerability? · Methodology