CVE-2025-12480 is a critical Improper Access Control vulnerability affecting Triofox versions prior to 16.7.10368.56560, allowing unauthorized access to initial setup pages even after configuration. With a CVSS score of 9.1, this network-exploitable flaw requires no user interaction or privileges, enabling high impact to confidentiality and integrity. This vulnerability is actively exploited in the wild, as confirmed by its presence in the KEV catalog and numerous media reports detailing its use to gain full system access. While no Metasploit or ExploitDB modules exist, Nuclei templates are available, and the CVE has garnered significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 16.7.10368.56560CPE matchmatch criteria | cpe:2.3:a:gladinet:triofox:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.3 Mastodon, and 2.4 GitHub mentions.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.