PT-2026-47019 · Termix · Termix
CVE-2026-45746
·
Published
2026-06-05
·
Updated
2026-06-08
CVSS v3.1
9.0
Critical
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Termix versions prior to 2.3.2
Description
Termix is a web-based server management platform providing SSH terminal, tunneling, and file editing capabilities. The File Manager functionality contains a Broken Access Control issue resulting from improper validation of the
sessionId parameter. The backend trusts a client-controlled identifier without verifying its ownership, allowing an attacker to access active File Manager sessions of other users. Because these sessions are linked to SSH connections to remote VPS instances, an attacker can interact with another user's remote filesystem. This enables unauthorized file reading, writing, uploading, and execution, leading to remote command execution (RCE) on the target VPS.Recommendations
Update to version 2.3.2.
Exploit
Fix
RCE
Improper Access Control
IDOR
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Termix