PT-2026-47020 · Termix · Termix

CVE-2026-45748

·

Published

2026-06-05

·

Updated

2026-06-12

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Termix versions prior to 2.3.2
Description Termix is a web-based server management platform providing SSH terminal, tunneling, and file editing capabilities. The 'POST /ssh/tunnel/connect' endpoint allows persistent OS command injection on the source SSH host. This occurs because the application builds an SSH tunnel command by interpolating user-controlled host record fields endpointIP, endpointUsername, and password directly into a shell command without proper escaping.
Recommendations Update to version 2.3.2.

Exploit

Fix

RCE

OS Command Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-45748
GHSA-XMJH-8CC2-QM49

Affected Products

Termix