Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Tsplus

First CVE: Sep 11, 2023Active for: 3 yearsTotal CVEs: 7

Tsplus develops remote-access and remote-work solutions that enable secure connectivity and session management for distributed workforces, with its vulnerability profile centered on the recurring products Tsplus Remote Work and Tsplus Remote Access. The durable signal across observed disclosures centers on credential and permission handling, with recurrent weaknesses in default permissions configuration, cleartext storage of sensitive information, and insufficiently protected credential storage that reflect the authentication and access-control demands of remote-connectivity platforms. Current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
7
Total CVEs
More Total CVEs than 88% of tracked vendors
1.8
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 79% of tracked vendors
8.5
Avg CVSS Score
Higher Avg CVSS Score than 82% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Tsplus over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 11, 2023
2 years ago
Most Recent CVE
Jul 29, 2025
361 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (7 CVEs).

7 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2023-31069CRITICAL
An issue was discovered in TSplus Remote Access through 16.0.2.14. Credentials are stored as cleartext within the HTML source code of the login page.
Sep 11, 20239.838NOYES
CVE-2023-31068CRITICAL
An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permissions for Everyone on some directories under %PROGRAMFILES(X86)%\TSplus\UserDesktop\
Sep 11, 20239.838NOYES
CVE-2023-31067CRITICAL
An issue was discovered in TSplus Remote Access through 16.0.2.14. There are Full Control permissions for Everyone on some directories under %PROGRAMFILES(X86)%\TSplus\Clients\www.
Sep 11, 20239.838NOYES
CVE-2023-27133CRITICAL
TSplus Remote Work 16.0.0.0 has weak permissions for .exe, .js, and .html files under the %PROGRAMFILES(X86)%\TSplus-RemoteWork\Clients\www folder. This may enable privilege escala
Oct 17, 20239.827NONO
CVE-2023-27132CRITICAL
TSplus Remote Work 16.0.0.0 places a cleartext password on the "var pass" line of the HTML source code for the secure single sign-on web portal. NOTE: CVE-2023-31069 is only about
Oct 17, 20239.824NONO
CVE-2025-5922MEDIUM
Access to TSplus Remote Access Admin Tool is restricted to administrators (unless "Disable UAC" option is enabled) and requires a PIN code. In versions below v18.40.6.17 the PIN's
Jul 29, 20254.819NONO
CVE-2025-26318MEDIUM
hb.exe in TSplus Remote Access before 17.30 2024-10-30 allows remote attackers to retrieve a list of all domain accounts currently connected to the application.
Mar 4, 20255.818NONO
View all 7 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products7 CVEs
29%
71%
Severity distribution among all CVEs352,427 CVEs
45%
40%
11%
MediumCritical
Attack Vector
Local1 (14.3%)
Network6 (85.7%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None7 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low1 (14.3%)
High0 (0.0%)
None6 (85.7%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (7 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
42.9% of CVEs· 80th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Tsplus.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Tsplus — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Tsplus's Products

View all 2 CNAs →

Top CWEs