claroty.com
Multiple Vulnerabilities Discovered in Vertiv Products
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Two critical vulnerabilities have been identified in Vertiv products, CVE-2025-41426 and CVE-2025-46412, both published on 2025-05-21. CVE-2025-41426 involves a stack-based buffer overflow that could allow attackers to execute code on affected devices. CVE-2025-46412 allows attackers to bypass authentication due to improper protection of webserver functions. The affected products include Liebert RDU101 and Liebert UNITY. Vertiv has recommended immediate action for users to mitigate these vulnerabilities. Team82, the reporting entity, emphasizes its commitment to coordinated disclosure to enhance cybersecurity. The vulnerabilities pose significant risks to users who have not yet applied the recommended mitigations.
Key Points: • CVE-2025-41426 involves a stack-based buffer overflow allowing code execution. • CVE-2025-46412 permits attackers to bypass authentication on webserver functions. • Both vulnerabilities affect Vertiv's Liebert RDU101 and Liebert UNITY products.