logo

CISA Issues Alert on Gladinet CentreStack and Triofox Vulnerabilities Under Active Exploitation

ID: 3768c989-c115-5e2e-81c6-d65a30d44b0c

STIX ID: report--3768c989-c115-5e2e-81c6-d65a30d44b0c

Feed Name: GBHackers

Threat Score
75/100

Date Published: 2025-11-05

Date Updated: 2026-04-22

Author: Divya

...
...

CISA has added CVE-2025-11371 — a CWE-552 file/directory access vulnerability in Gladinet CentreStack and Triofox that allows unauthorized external access to sensitive files — to its Known Exploited Vulnerabilities catalog with an enforced remediation deadline of November 25, 2025; the vulnerability is reported as actively exploited and mitigations include applying vendor patches, following BOD 22-01 cloud-security controls, or discontinuing use of the affected products while organizations inventory instances and hunt for signs of compromise.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.