logo

CISA Warns of Gladinet CentreStack and Triofox Vulnerability Exploited in Attacks

ID: 0d20a8f2-e171-5af0-aa7c-db3ff60fd650

STIX ID: report--0d20a8f2-e171-5af0-aa7c-db3ff60fd650

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2025-12-17

Date Updated: 2026-04-21

Author: Abinaya

...
...

CISA warns of CVE-2025-14611: a hardcoded AES key vulnerability in Gladinet CentreStack and Triofox that allows unauthenticated remote actors to bypass authentication and perform arbitrary file inclusion, risking data exfiltration; organizations are urged to apply patches or mitigations immediately, follow BOD 22-01 guidance, or discontinue affected products by the January 5, 2026 remediation deadline, and to implement enhanced monitoring and network segmentation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.