www.claroty.com
Critical Vulnerabilities Found in Vertiv UPS Network Cards
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Team82 identified two critical vulnerabilities in Vertiv's Liebert IS-UNITY-DP network cards, both rated 9.8 on the CVSSv3 scale. The vulnerabilities, CVE-2025-46412 and CVE-2025-41426, allow for authentication bypass and remote code execution, posing significant risks to data centers reliant on these uninterruptible power supply (UPS) devices. Successful exploitation could enable attackers to disrupt power operations and execute arbitrary code, potentially affecting entire facilities. Vertiv has released firmware updates to mitigate these vulnerabilities, urging users to upgrade to specific versions. The vulnerabilities were disclosed on June 9, 2026, and are critical for organizations using Vertiv UPS systems.
Key Points: • Two critical vulnerabilities (CVE-2025-46412, CVE-2025-41426) found in Vertiv UPS network cards. • Exploits could allow attackers to disrupt power operations and execute arbitrary code. • Vertiv recommends immediate firmware updates to mitigate these vulnerabilities.