Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Trihedral

First CVE: Dec 11, 2014Active for: 12 yearsTotal CVEs: 10
67.5
VTI Score
TOP TARGET

Trihedral's vulnerability footprint concentrates in its VTScada industrial control and SCADA visualization platform, a niche but operationally critical product deployed across utilities and manufacturing environments. The vendor's disclosures skew toward serious outcomes and have a moderate tendency toward confirmed in-the-wild exploitation; the recurring weakness classes—including information exposure through directory listings, improper access control, weak authentication, and input validation gaps—reflect the web-facing and networked nature of the platform and its exposure to both internal and external threat actors. Current severity, exploitation activity, and exposure metrics are shown alongside this summary.

FAUCET AI Generated
10
Total CVEs
More Total CVEs than 92% of tracked vendors
2.5
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 90% of tracked vendors
7.5
Avg CVSS Score
Higher Avg CVSS Score than 57% of tracked vendors
10.0%
In CISA KEV
Higher KEV Rate than 100% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Trihedral over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 11, 2014
11 years ago
Most Recent CVE
Nov 2, 2022
1,360 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (10 CVEs).

10 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2016-4523HIGH
The WAP interface in Trihedral VTScada (formerly VTS) 8.x through 11.x before 11.2.02 allows remote attackers to cause a denial of service (out-of-bounds read and application crash
Jun 9, 20167.577YESNO
CVE-2016-4532CRITICAL
Directory traversal vulnerability in the WAP interface in Trihedral VTScada (formerly VTS) 8.x through 11.x before 11.2.02 allows remote attackers to read arbitrary files via a cra
Jun 9, 20169.143NONO
CVE-2016-4510CRITICAL
The WAP interface in Trihedral VTScada (formerly VTS) 8.x through 11.x before 11.2.02 allows remote attackers to bypass authentication and read arbitrary files via unspecified vect
Jun 9, 20169.137NONO
CVE-2022-3181HIGH
An Improper Input Validation vulnerability exists in Trihedral VTScada version 12.0.38 and prior. A specifically malformed HTTP request could cause the affected VTScada to crash. B
Nov 2, 20227.524NONO
CVE-2017-14031HIGH
An Improper Access Control issue was discovered in Trihedral VTScada 11.3.03 and prior. A local, non-administrator user has privileges to read and write to the file system of the t
Nov 6, 20177.824NONO
CVE-2017-14029HIGH
An Uncontrolled Search Path Element issue was discovered in Trihedral VTScada 11.3.03 and prior. The program will execute specially crafted malicious dll files placed on the target
Nov 6, 20177.824NONO
CVE-2017-6045HIGH
An Information Exposure issue was discovered in Trihedral VTScada Versions prior to 11.2.26. Some files are exposed within the web server application to unauthenticated users. Thes
Jun 21, 20177.524NONO
CVE-2017-6043HIGH
A Resource Consumption issue was discovered in Trihedral VTScada Versions prior to 11.2.26. The client does not properly validate the input or limit the amount of resources that ar
Jun 21, 20177.523NONO
CVE-2017-6053MEDIUM
A Cross-Site Scripting issue was discovered in Trihedral VTScada Versions prior to 11.2.26. A cross-site scripting vulnerability may allow JavaScript code supplied by the attacker
Jun 21, 20176.121NONO
CVE-2014-9192MEDIUM
Integer overflow in Trihedral Engineering VTScada (formerly VTS) 6.5 through 9.x before 9.1.20, 10.x before 10.2.22, and 11.x before 11.1.07 allows remote attackers to cause a deni
Dec 11, 20145.016NONO
View all 10 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products10 CVEs
20%
60%
20%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (20.0%)
Network7 (70.0%)
Unknown1 (10.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low9 (90.0%)
High0 (0.0%)
Unknown1 (10.0%)
User Interaction
None7 (70.0%)
Unknown1 (10.0%)
Required2 (20.0%)
Privileges Required
Low1 (10.0%)
High0 (0.0%)
None8 (80.0%)
Unknown1 (10.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (10 CVEs).

CISA KEV
1 CVE
10.0% of CVEs· 100th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Trihedral.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Trihedral — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Trihedral's Products

View all 1 CNAs →

Top CWEs