CVE-2026-20759: Toa Corporation Multiple Network Cameras Trifora 3 Series

High severity, CVSS 8.7. EPSS: 1.6% chance of exploitation in the next 30 days.

OS Command Injection vulnerability exists in multiple Network Cameras TRIFORA 3 series provided by TOA Corporation, which may allow a logged-in user with the low("monitoring user") or higher privilege to execute an arbitrary OS command.

Affected products

Published 2026-01-16. Last modified 2026-06-17.