ZeroHour

CVE-2017-15376

PoC
CVSS 3.1
9.8 critical
EPSS
4%p89
Published
()
Modified
Description

The TELNET service in Mobatek MobaXterm 10.4 does not require authentication, which allows remote attackers to execute arbitrary commands via TCP port 23.

Vendors
mobatek
Products
mobaxterm
Weakness
CWE-94
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.