Toa · Trifora 3 Series Network Cameras · CVE-2026-20894
**Name of the Vulnerable Software and Affected Versions**
TOA Corporation TRIFORA 3 series Network Cameras (affected versions not specified)
**Description**
A cross-site scripting issue exists in TOA Corporation’s TRIFORA 3 series Network Cameras. An attacker who is an administrator can execute arbitrary scripts on the web browser of a victim administrator by configuring the product with malicious input through the setting screen.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.