CVE-2025-14611
Gladinet CentreStack and Triofox Hard Coded Cryptographic Vulnerability
⚠ KEVEPSS 80.9%
Description
Gladinet CentreStack and TrioFox contain a hardcoded cryptographic keys vulnerability for their implementation of the AES cryptoscheme. This vulnerability degrades security for public exposed endpoints that may make use of it and may offer arbitrary local file inclusion when provided a specially crafted request without authentication.
How to fix CVE-2025-14611
No package mapping is available — consult the references below for vendor-specific guidance.
Is CVE-2025-14611 being exploited?
Yes — CVE-2025-14611 is on the CISA Known Exploited Vulnerabilities (KEV) catalog. Patch immediately.
Affected packages (0)
No package mapping in OSV.