Skip to content
Noroxi

termix records

9 published records for vendor termix.

All records

9 records
  • Termix has an OS Command Injection in File Manager resolvePath endpoint

    CriticalCVSS 9.9No exploitEPSS 3%

    termix · termixJun 5, 2026

  • Termix Vulnerable to Remote Code Execution via SSH Tunnel Forward Command Injection

    CriticalCVSS 9.8No exploitEPSS 3%

    termix · termixJun 5, 2026

  • Termix' official Docker image contains an authentication bypass vulnerability

    CriticalCVSS 9.2No exploitEPSS 4%

    termix · termixOct 1, 2025

  • Termix Vulnerable to Arbitrary Command Execution via Session Hijacking

    CriticalCVSS 9.0Proof of conceptEPSS 1%

    termix · termixJun 5, 2026

  • Termix Vulnerable to Arbitrary Command Execution in File Manager

    CriticalCVSS 9.0No exploitEPSS 0%

    termix · termixJun 5, 2026

  • Termix's TOTP two-factor authentication can be disabled or bypassed using only the account password

    HighCVSS 8.1No exploitEPSS 0%

    termix · termixJun 5, 2026

  • Termix has a File-Manager Session Hijack via Missing Ownership Check (IDOR)

    HighCVSS 8.1No exploitEPSS 0%

    termix · termixJun 5, 2026

  • Termix has improper certificate validation in Electron desktop client that enables MITM credential/token theft

    HighCVSS 8.0No exploitEPSS 0%

    termix · termixJun 5, 2026

  • Termix has a Stored XSS in File Manager leading to Local File Inclusion (LFI) in Electron and Session Hijacking in Browser

    MediumCVSS 4.7Proof of conceptEPSS 0%

    termix · termixJan 12, 2026