PT-2026-1461 · Unknown · Blue Access Cobalt

Published

2026-01-06

·

Updated

2026-01-29

·

CVE-2025-60534

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Blue Access Cobalt version 02.000.195
Description The software is susceptible to an authentication bypass. This allows an attacker to selectively proxy requests to operate functionality on the web application without valid credentials. The issue allows bypassing the normal authentication process.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Improper Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-60534

Affected Products

Blue Access Cobalt