Trivum produces a small portfolio of professional audio streaming and control products, including the C4 Professional system and WebTouch Setup interfaces, primarily serving broadcast and networked audio applications. Vulnerabilities affecting this vendor center on information-disclosure and configuration-handling issues, reflecting the exposure surface of web-based management interfaces and firmware components in networked audio equipment. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Trivum over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-13862CRITICAL Touchpad / Trivum WebTouch Setup V9 V2.53 build 13163 of Apr 6 2018 09:10:14 (FW 303) allow unauthorized remote attackers to reset the authentication via the "/xml/system/setAttrib | Jul 17, 2018 | 9.8 | 67 | NO | YES |
CVE-2018-13859CRITICAL MusicCenter / Trivum Multiroom Setup Tool V8.76 - SNR 8604.26 - C4 Professional before V9.34 build 13381 - 12.07.18, allow unauthorized remote attackers to reset the authentication | Jul 17, 2018 | 9.8 | 49 | NO | YES |
CVE-2018-13858CRITICAL MusicCenter / Trivum Multiroom Setup Tool V8.76 - SNR 8604.26 - C4 Professional allows unauthorized remote attackers to reboot or execute other functions via the "/xml/system/contr | Jul 17, 2018 | 9.8 | 31 | NO | NO |
CVE-2018-13861CRITICAL Touchpad / Trivum WebTouch Setup V9 V2.53 build 13163 of Apr 6 2018 09:10:14 (FW 303) allows unauthorized remote attackers to reboot or execute other functions via the "/xml/system | Jul 17, 2018 | 9.8 | 28 | NO | NO |
CVE-2018-13860HIGH MusicCenter / Trivum Multiroom Setup Tool V8.76 - SNR 8604.26 - C4 Professional before V9.34 build 13381 - 12.07.18 allows unauthorized remote attackers to obtain sensitive informa | Jul 17, 2018 | 7.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Trivum.
Media articles that mention a CVE ID that affects a product developed by Trivum — matched by CVE ID, not by vendor name.