PT-2026-47017 · Termix · Termix

CVE-2026-45744

·

Published

2026-06-05

·

Updated

2026-06-08

CVSS v3.1

9.9

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Termix versions prior to 2.3.2
Description Termix is a web-based server management platform providing SSH terminal, tunneling, and file editing capabilities. An OS command injection exists in the "/ssh/file manager/ssh/resolvePath" endpoint. The issue arises because the endpoint employs double-quote escaping during shell command construction, which fails to block command substitution using backticks or the $(...) syntax. This allows any authenticated user with an active File Manager SSH session to execute arbitrary commands on the connected remote host.
Recommendations Update to version 2.3.2.

Exploit

Fix

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-45744
GHSA-37F4-WQ95-PG33

Affected Products

Termix