Aller au contenu
appaloosa scout logo main rounded
CRITICAL 9.1 KEV

CVE-2025-12480

EN Triofox versions prior to 16.7.10368.56560, are vulnerable to an Improper Access Control flaw that allows access to initial setup pages even after setup is complete.

CVSS v3 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

CISA Known Exploited Vulnerability

Ajouté au KEV
2025-11-12
Deadline remédiation
2025-12-03
Action requise
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Ransomware
Non

Apps suivies affectées

Configurations CPE vulnérables

Vendor Produit Plateforme Versions CPE 2.3 URI
gladinet triofox iOS <16.7.10368.56560 cpe:2.3:a:gladinet:triofox:*:*:*:*:*:*:*:*
Voir sur NVD ↗ Catalogue CISA KEV ↗