Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Fri, 05 Jun 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 05 Jun 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. Starting in version 1.7.0, Termix Desktop (Electron) disables TLS certificate validation, allowing a machine-in-the-middle attacker to intercept and modify HTTPS traffic to the configured Termix server. This can lead to credential theft and JWT/session theft during login and normal use. As of time of publication, no known patched versions are available. | |
| Title | Termix has improper certificate validation in Electron desktop client that enables MITM credential/token theft | |
| Weaknesses | CWE-295 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-06-05T19:39:58.240Z
Reserved: 2026-05-13T06:54:34.220Z
Link: CVE-2026-45745
Updated: 2026-06-05T19:39:52.955Z
Status : Undergoing Analysis
Published: 2026-06-05T18:17:30.180
Modified: 2026-06-05T20:17:32.110
Link: CVE-2026-45745
No data.
OpenCVE Enrichment
Updated: 2026-06-05T20:15:09Z