VORANT. Threat Intelligence Sign in Get the full feed

Fudo Enterprise versions 5.5.0-5.6.2 contain an access control flaw allowing…

high vulnerability

Fudo Enterprise versions 5.5.0-5.6.2 contain an access control flaw allowing low-privileged users to access admin resources including system logs and configuration via unprotected API endpoints.

CERT Polska coordinated the disclosure of CVE-2025-13480, a privilege escalation vulnerability in Fudo Enterprise privileged access management software. The flaw affects versions 5.5.0 through 5.6.2 and stems from improperly protected API endpoints that fail to enforce authorization checks. Low-privileged authenticated users can exploit these endpoints to access administrator-only resources, including sensitive system logs and configuration settings that should be restricted to privileged accounts.

The vulnerability represents a broken access control issue that could allow malicious insiders or compromised low-privilege accounts to gather intelligence about the PAM deployment, potentially facilitating lateral movement or further attacks. Fudo Security reported the vulnerability through CERT Polska's coordinated vulnerability disclosure program, and a patch has been released in version 5.6.3. Organizations running affected versions should prioritize upgrading to remediate this access control bypass.

Mentioned in this report

Vulnerabilities CVE-2025-13480

Source reporting: https://cert.pl/en/posts/2026/04/CVE-2025-13480

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free