İçeriğe atla
Noroxi

Mobatek kayıtları

mobatek üreticisine ait 11 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
4
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

11 kayıt
  • CVE-2017-15376
    40Planlayın

    The TELNET service in Mobatek MobaXterm 10.4 does not require authentication, which allows remote attackers to execute arbitrary commands vi

    KritikCVSS 9,8İstismar yokEPSS %4

    mobatek · mobaxterm16 Eki 2017

  • CVE-2019-7690
    40Planlayın

    In MobaTek MobaXterm Personal Edition v11.1 Build 3860, the SSH private key and its password can be retrieved from process memory for the li

    KritikCVSS 9,8İstismar yokEPSS %3

    mobatek · mobaxterm13 May 2019

  • CVE-2019-16305
    37İzleyin

    In MobaXterm 11.1 and 12.1, the protocol handler is vulnerable to command injection.

    YüksekCVSS 8,8İstismar yokEPSS %7

    mobatek · mobaxterm14 Eyl 2019

  • CVE-2019-13475
    36İzleyin

    In MobaXterm 11.1, the mobaxterm: URI handler has an argument injection vulnerability that allows remote attackers to execute arbitrary comm

    YüksekCVSS 8,8İstismar yokEPSS %4

    mobatek · mobaxterm9 Tem 2019

  • CVE-2022-38337
    36İzleyin

    When aborting a SFTP connection, MobaXterm before v22.1 sends a hardcoded password to the server.

    KritikCVSS 9,1İstismar yokEPSS %1

    mobatek · mobaxterm5 Ara 2022

  • CVE-2026-25866
    34İzleyin

    MobaXterm < 26.1 Notepad++ Unquoted Service Path

    YüksekCVSS 8,5İstismar yokEPSS %0

    mobatek · mobaxterm9 Mar 2026

  • CVE-2024-48200
    33İzleyin

    An issue in MobaXterm v24.2 allows a local attacker to escalate privileges and execute arbitrary code via the remove function of the MobaXte

    YüksekCVSS 8,4İstismar yokEPSS %0

    31 Eki 2024

  • CVE-2015-7244
    32İzleyin

    The default configuration of the server in MobaXterm before 8.3 has a disabled Access Control setting and consequently does not require auth

    YüksekCVSS 7,5İstismar yokEPSS %5

    mobatek · mobaxterm3 Kas 2015

  • CVE-2022-38336
    32İzleyin

    An access control issue in MobaXterm before v22.1 allows attackers to make connections to the server via the SSH or SFTP protocols without a

    YüksekCVSS 8,1İstismar yokEPSS %1

    mobatek · mobaxterm5 Ara 2022

  • CVE-2021-28847
    30İzleyin

    MobaXterm before 21.0 allows remote servers to cause a denial of service (Windows GUI hang) via tab title change requests that are sent repe

    YüksekCVSS 7,5İstismar yokEPSS %1

    mobatek · mobaxterm3 Haz 2021

  • CVE-2017-6805
    23İzleyin

    Directory traversal vulnerability in the TFTP server in MobaXterm Personal Edition 9.4 allows remote attackers to read arbitrary files via a

    OrtaCVSS 5,3Kavram kanıtıEPSS %8

    mobatek · mobaxterm20 Mar 2017