Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Termix Vulnerable to Remote Code Execution via SSH Tunnel Forward Command Injection
Vulnerability Description
Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. The `POST /ssh/tunnel/connect` endpoint in Termix prior to version 2.3.2 builds an SSH tunnel command by interpolating user-controlled host record fields (`endpointIP`, `endpointUsername`, `password`) directly into a shell command without escaping, allowing persistent OS command injection on the source SSH host. Version 2.3.2 patches the issue.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Vulnerability Type
OS命令中使用的特殊元素转义处理不恰当(OS命令注入)
Vulnerability Title
Termix 操作系统命令注入漏洞
Vulnerability Description
Termix是Karmaa个人开发者的一个服务器管理平台。 Termix 2.3.2之前版本存在操作系统命令注入漏洞,该漏洞源于POST /ssh/tunnel/connect端点将用户控制的主机记录字段直接插入shell命令而未进行转义,可能导致在源SSH主机上持久执行OS命令注入。
CVSS Information
N/A
Vulnerability Type
N/A