CVE-2026-20894: Toa Corporation Multiple Network Cameras Trifora 3 Series
Medium severity, CVSS 4.8. EPSS: 0.2% chance of exploitation in the next 30 days.
Cross-site scripting vulnerability exists in multiple Network Cameras TRIFORA 3 series provided by TOA Corporation. If an attacking administrator configures the affected product with some malicious input, an arbitrary script may be executed on the web browser of a victim administrator who accesses the setting screen.
Affected products
- Toa Corporation Multiple Network Cameras Trifora 3 Series
Published 2026-01-16. Last modified 2026-06-17.