Beveiligingsadvies

CVE-2026-45745

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-06-05 17:53:54
Laatst bijgewerkt 2026-06-10 03:58:46
Toegewezen door GitHub_M
CVSS-score 8.0
Status PUBLISHED

Beschrijving

Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Starting in version 1.7.0, Termix Desktop (Electron) disables TLS certificate validation, allowing a machine-in-the-middle attacker to intercept and modify HTTPS traffic to the configured Termix server. This can lead to credential theft and JWT/session theft during login and normal use. As of time of publication, no known patched versions are available.