Triplc develops a narrow line of industrial programmable logic controllers and associated server software, centered on its Nano-10 PLC and Trilogi Server products for embedded automation and control applications. The reported vulnerabilities reflect input-validation weaknesses characteristic of networked control systems, where application-layer parsing and protocol handling present the primary attack surface. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Triplc over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2013-2784HIGH Triangle Research International (aka Tri) Nano-10 PLC devices with firmware before r81 use an incorrect algorithm for bounds checking of data in Modbus/TCP packets, which allows re | Jul 10, 2013 | 7.8 | 34 | NO | YES |
CVE-2013-5741HIGH Triangle Research International (aka Tri) Nano-10 PLC devices with firmware r81 and earlier do not properly handle large length values in MODBUS data, which allows remote attackers | Oct 29, 2013 | 7.8 | 25 | NO | NO |
CVE-2013-6927MEDIUM Internet TRiLOGI Server (unknown versions) could allow a local user to bypass security and create a local user account. | Feb 13, 2020 | 5.5 | 16 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Triplc.
Media articles that mention a CVE ID that affects a product developed by Triplc — matched by CVE ID, not by vendor name.