Multiple Vulnerabilities Discovered in Vertiv Products

Multiple Vulnerabilities Discovered in Vertiv Products

First seen 11 Jun 2026, 15:11 UTC claroty.com 95% similarity 70.5

Article Content

Browse articles
ThreatCluster

Two critical vulnerabilities have been identified in Vertiv products, CVE-2025-41426 and CVE-2025-46412, both published on 2025-05-21. CVE-2025-41426 involves a stack-based buffer overflow that could allow attackers to execute code on affected devices. CVE-2025-46412 allows attackers to bypass authentication due to improper protection of webserver functions. The affected products include Liebert RDU101 and Liebert UNITY. Vertiv has recommended immediate action for users to mitigate these vulnerabilities. Team82, the reporting entity, emphasizes its commitment to coordinated disclosure to enhance cybersecurity. The vulnerabilities pose significant risks to users who have not yet applied the recommended mitigations.

Key Points: • CVE-2025-41426 involves a stack-based buffer overflow allowing code execution. • CVE-2025-46412 permits attackers to bypass authentication on webserver functions. • Both vulnerabilities affect Vertiv's Liebert RDU101 and Liebert UNITY products.

ThreatCluster AI

Timeline

2025-05-21
CVE-2025-41426 published
A stack-based buffer overflow vulnerability in Vertiv products was disclosed, allowing potential code execution.
Article 1 (claroty.com)
2025-05-21
CVE-2025-46412 published
A vulnerability allowing authentication bypass in Vertiv webserver functions was disclosed.
Article 2 (claroty.com)
2026-06-11
Vertiv recommends user actions
Vertiv advised users of affected products to take immediate actions to mitigate the vulnerabilities.
Article 1 (claroty.com)

Community

Browse all →

Tracked Entities in This Story