Записи termix
9 опубликованных записей вендора termix.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 22,2 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')3
- CWE-284 Improper Access Control2
- CWE-295 Improper Certificate Validation1
- CWE-308 Use of Single-factor Authentication1
- CWE-639 Authorization Bypass Through User-Controlled Key1
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2026-45744Эксплойта нет | Termix has an OS Command Injection in File Manager resolvePath endpointtermix · termix · CWE-78 | Критическая9,9 | — | 3,0 % | 5 июн. 2026 г. |
40В плане | CVE-2026-45748Эксплойта нет | Termix Vulnerable to Remote Code Execution via SSH Tunnel Forward Command Injectiontermix · termix · CWE-78 | Критическая9,8 | — | 2,5 % | 5 июн. 2026 г. |
37Наблюдать | CVE-2025-59951Эксплойта нет | Termix' official Docker image contains an authentication bypass vulnerabilitytermix · termix · CWE-284 | Критическая9,2 | — | 4,3 % | 1 окт. 2025 г. |
36Наблюдать | CVE-2026-45746Proof of concept | Termix Vulnerable to Arbitrary Command Execution via Session Hijackingtermix · termix · CWE-284 | Критическая9,0 | — | 0,6 % | 5 июн. 2026 г. |
36Наблюдать | CVE-2026-45750Эксплойта нет | Termix Vulnerable to Arbitrary Command Execution in File Managertermix · termix · CWE-78 | Критическая9,0 | — | 0,4 % | 5 июн. 2026 г. |
32Наблюдать | CVE-2026-45749Эксплойта нет | Termix's TOTP two-factor authentication can be disabled or bypassed using only the account passwordtermix · termix · CWE-308 | Высокая8,1 | — | 0,5 % | 5 июн. 2026 г. |
32Наблюдать | CVE-2026-45743Эксплойта нет | Termix has a File-Manager Session Hijack via Missing Ownership Check (IDOR)termix · termix · CWE-639 | Высокая8,1 | — | 0,4 % | 5 июн. 2026 г. |
32Наблюдать | CVE-2026-45745Эксплойта нет | Termix has improper certificate validation in Electron desktop client that enables MITM credential/token thefttermix · termix · CWE-295 | Высокая8,0 | — | 0,2 % | 5 июн. 2026 г. |
18Наблюдать | CVE-2026-22804Proof of concept | Termix has a Stored XSS in File Manager leading to Local File Inclusion (LFI) in Electron and Session Hijacking in Browsertermix · termix · CWE-79 | Средняя4,7 | — | 0,2 % | 12 янв. 2026 г. |
- CVE-2026-4574440В плане
Termix has an OS Command Injection in File Manager resolvePath endpoint
КритическаяCVSS 9,9Эксплойта нетEPSS 3 %termix · termix5 июн. 2026 г.
- CVE-2026-4574840В плане
Termix Vulnerable to Remote Code Execution via SSH Tunnel Forward Command Injection
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %termix · termix5 июн. 2026 г.
- CVE-2025-5995137Наблюдать
Termix' official Docker image contains an authentication bypass vulnerability
КритическаяCVSS 9,2Эксплойта нетEPSS 4 %termix · termix1 окт. 2025 г.
- CVE-2026-4574636Наблюдать
Termix Vulnerable to Arbitrary Command Execution via Session Hijacking
КритическаяCVSS 9,0Proof of conceptEPSS 1 %termix · termix5 июн. 2026 г.
- CVE-2026-4575036Наблюдать
Termix Vulnerable to Arbitrary Command Execution in File Manager
КритическаяCVSS 9,0Эксплойта нетEPSS 0 %termix · termix5 июн. 2026 г.
- CVE-2026-4574932Наблюдать
Termix's TOTP two-factor authentication can be disabled or bypassed using only the account password
ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %termix · termix5 июн. 2026 г.
- CVE-2026-4574332Наблюдать
Termix has a File-Manager Session Hijack via Missing Ownership Check (IDOR)
ВысокаяCVSS 8,1Эксплойта нетEPSS 0 %termix · termix5 июн. 2026 г.
- CVE-2026-4574532Наблюдать
Termix has improper certificate validation in Electron desktop client that enables MITM credential/token theft
ВысокаяCVSS 8,0Эксплойта нетEPSS 0 %termix · termix5 июн. 2026 г.
- CVE-2026-2280418Наблюдать
Termix has a Stored XSS in File Manager leading to Local File Inclusion (LFI) in Electron and Session Hijacking in Browser
СредняяCVSS 4,7Proof of conceptEPSS 0 %termix · termix12 янв. 2026 г.