Описание
Triofox versions prior to 16.7.10368.56560, are vulnerable to an Improper Access Control flaw that allows access to initial setup pages even after setup is complete.
Triofox versions prior to 16.7.10368.56560, are vulnerable to an Improper Access Control flaw that allows access to initial setup pages even after setup is complete.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2025-12480
- https://access.triofox.com/releases_history
- https://cloud.google.com/blog/topics/threat-intelligence/triofox-vulnerability-cve-2025-12480
- https://github.com/mandiant/Vulnerability-Disclosures/blob/master/2025/MNDT-2025-0008.md
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-12480
- https://www.triofox.com
Связанные уязвимости
CVSS3: 9.1
nvd
26 дней назад
Triofox versions prior to 16.7.10368.56560, are vulnerable to an Improper Access Control flaw that allows access to initial setup pages even after setup is complete.
CVSS3: 9.1
fstec
26 дней назад
Уязвимость программной платформы для безопасного обмена файлами Gladinet Triofox, связанная с недостатками механизма контроля доступа, позволяющая нарушителю получить несанкционированный доступ к страницам настройки конфигурации платформы