Security Advisory

CVE-2025-11371

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-10-09 16:50:49
Last updated 2026-02-26 17:47:55
Assigner Huntress
State PUBLISHED

Description

In the default installation and configuration of Gladinet CentreStack and TrioFox, there is an unauthenticated Local File Inclusion Flaw that allows unintended disclosure of system files. Exploitation of this vulnerability has been observed in the wild.  This issue impacts Gladinet CentreStack and Triofox: All versions prior to and including 16.7.10368.56560