PT-2026-47019 · Termix · Termix

CVE-2026-45746

·

Published

2026-06-05

·

Updated

2026-06-08

CVSS v3.1

9.0

Critical

VectorAV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Termix versions prior to 2.3.2
Description Termix is a web-based server management platform providing SSH terminal, tunneling, and file editing capabilities. The File Manager functionality contains a Broken Access Control issue resulting from improper validation of the sessionId parameter. The backend trusts a client-controlled identifier without verifying its ownership, allowing an attacker to access active File Manager sessions of other users. Because these sessions are linked to SSH connections to remote VPS instances, an attacker can interact with another user's remote filesystem. This enables unauthorized file reading, writing, uploading, and execution, leading to remote command execution (RCE) on the target VPS.
Recommendations Update to version 2.3.2.

Exploit

Fix

RCE

Improper Access Control

IDOR

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-45746
GHSA-CX2R-843C-VWW8

Affected Products

Termix