Remote Code Execution Risk in Versa Director SD-WAN Orchestration Platform
CVE-2025-23173

7.5HIGH

Key Information:

Vendor

Versa

Status
Vendor
CVE Published:
19 June 2025

What is CVE-2025-23173?

The Versa Director SD-WAN orchestration platform faces a significant vulnerability due to its websockify service being exposed on port 6080 by default. This exposure allows for remote access to uCPE virtual machines via the Director GUI, posing a serious risk as websockify is vulnerable to known attacks that could potentially lead to remote code execution. Although there have been no recorded instances of this flaw being exploited, security researchers have released proof of concept code to demonstrate its potential impact. Users of the platform are advised to restrict access to port 6080 if console access is not required and to upgrade to the latest remediated software versions to mitigate risks.

Affected Version(s)

Director 21.2.2

Director 21.2.3

Director 22.1.1

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

.