CVE-2025-49825

Published Jun 17, 2025

Last updated 8 months ago

Overview

AI description

Automated description summarized from trusted sources.

CVE-2025-49825 is a remote authentication bypass vulnerability identified in Teleport Community Edition versions up to and including 17.5.1. Teleport is a platform designed to provide connectivity, authentication, access controls, and auditing capabilities for infrastructure. This flaw allows attackers to circumvent the authentication process remotely, without requiring any prior privileges or user interaction. The vulnerability is categorized under CWE-863 (Incorrect Authorization), indicating an issue within the authorization logic that could enable unauthorized access to protected resources. Exploitation of CVE-2025-49825 could grant attackers unauthorized entry to critical systems and infrastructure components managed by Teleport. Teleport has released patches for affected versions, including 17.5.2, 16.5.12, 15.5.3, 14.4.1, 13.4.27, and 12.4.35.

Description
Teleport provides connectivity, authentication, access controls and audit for infrastructure. Community Edition versions before and including 17.5.1 are vulnerable to remote authentication bypass. At time of posting, there is no available open-source patch.
Source
security-advisories@github.com
NVD status
Awaiting Analysis

Risk scores

CVSS 3.1

Type
Secondary
Base score
9.8
Impact score
5.9
Exploitability score
3.9
Vector string
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Severity
CRITICAL

Weaknesses

security-advisories@github.com
CWE-863

Social media

Hype score
Not currently trending
  1. تحذير: استغلال ثغرة Teleport تم اكتشاف ثغرة CVE-2025-49825 في Teleport تسمح بتجاوز المصادقة. هذا يعني أن المهاجمين قد يتمكنون من الوصول غير المصرح به إلى الأنظمة. ننصح ب

    @MisbarSec

    5 Feb 2026

    56 Impressions

    0 Retweets

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  2. Exploiting CVE-2025-49825 (authentication bypass vulnerability in Teleport) https://t.co/g5O7FhUkgF https://t.co/tDSrgyjDJW

    @secharvesterx

    3 Feb 2026

    85 Impressions

    1 Retweet

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  3. Exploiting CVE-2025-49825, authentication bypass vulnerability in Teleport https://t.co/7WLiXfrxO3

    @Dinosn

    3 Feb 2026

    1075 Impressions

    1 Retweet

    7 Likes

    5 Bookmarks

    2 Replies

    0 Quotes

  4. CVE-2025-49825 - Fist (public?) full chian for: Teleport allows remote authentication bypass An "older" #pruva reproduction with full chain. Used the repro for the exploit creation that is coming with the minimal SSH client that authenticates with the forged certificate . https:

    @N3mes1s

    31 Oct 2025

    2708 Impressions

    3 Retweets

    30 Likes

    17 Bookmarks

    1 Reply

    0 Quotes

  5. 🚨 CVE-2025-49825 - critical 🚨 Teleport - Authentication Bypass > Teleport versions prior to 17.5.2 are vulnerable to a remote authentication bypass vu... 👾 https://t.co/srceytDU8M @pdnuclei #NucleiTemplates #cve

    @pdnuclei_bot

    24 Sept 2025

    24 Impressions

    0 Retweets

    2 Likes

    1 Bookmark

    0 Replies

    0 Quotes

  6. Teleport の脆弱性 CVE-2025-49825 が FIX:リモート認証バイパスの可能性 https://t.co/JHnJvjCcIB Teleport における脆弱性 CVE-2025-49825 は、認証制御のリモート・バイパスという深刻なものです。SSH や Kubernetes

    @iototsecnews

    7 Jul 2025

    71 Impressions

    1 Retweet

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  7. A critical vulnerability (CVE-2025-49825) in Teleport up to version 17.5.1 allows remote attackers to bypass SSH authentication. Cloud users are auto-updated, but self-hosted agents must be patched immediately. 🚨 #Teleport #Security #UK https://t.co/uqwjauJnfb

    @TweetThreatNews

    23 Jun 2025

    50 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  8. Critical Authentication Bypass Flaw Patched in Teleport Teleport has disclosed a critical vulnerability (CVE-2025-49825, CVSS 9.8) in its open-source platform that allows remote attackers to bypass SSH authentication. The flaw affects Teleport Community Edition versions up to ht

    @dCypherIO

    23 Jun 2025

    114 Impressions

    1 Retweet

    1 Like

    0 Bookmarks

    0 Replies

    0 Quotes

  9. [CVE-2025-49825: CRITICAL] Stay alert: Teleport's Community Edition versions up to 17.5.1 have a security flaw allowing remote authentication bypass. No fix released yet. #cybersecurity#cve,CVE-2025-49825,#cybersecurity https://t.co/xk1mBikhli https://t.co/UftJOpULSR

    @CveFindCom

    18 Jun 2025

    52 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  10. CVE-2025-49825 Teleport provides connectivity, authentication, access controls and audit for infrastructure. Community Edition versions before and including 17.5.1 are vulnerable to… https://t.co/wgNQUp4jBC

    @CVEnew

    17 Jun 2025

    22 Impressions

    0 Retweets

    0 Likes

    0 Bookmarks

    0 Replies

    0 Quotes

  11. Critical Alert ⚠️CVE-2025-49825 (CVSS 9.8): Teleport Remote Auth Bypass! 🚨 Affects Teleport 12.4.35 → 17.5.2 🔧 Patch now: https://t.co/AcR5a3V97I 🔍 Details & mitigations: https://t.co/I9hRSAEC4B Upgrade your Proxy & agents ASAP! #CVE202549825 #Tele

    @empherehq

    17 Jun 2025

    13 Impressions

    1 Retweet

    2 Likes

    0 Bookmarks

    0 Replies

    0 Quotes