CVE-2026-79761
6.6 MEDIUMpublic exploit availablePublished 2026-09-24 · Updated 2026-09-25
AI analysis for this CVE has not been generated yet. Raw NVD data is shown below.
NVD description
Termix is a web-based server management platform with SSH terminal, tunneling, and file editing capabilities. From 1.7.0 until 2.5.1, the Termix SSH key deployment flow derives a grep pattern from a user-controlled public-key token and interpolates it into double-quoted shell commands executed on the selected target host. In src/backend/database/routes/credential-deploy-routes.ts, both grep -F verification paths accept command substitution or quote-breaking shell syntax in keyPattern. An authenticated user who can deploy a crafted SSH credential can therefore execute commands with the selected remote account's privileges. The separate ACME command-injection report is outside this CVE's scope. This issue is fixed in version 2.5.1.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:C/C:L/I:L/A:L
Weaknesses
CWE-78
Public exploit & PoC references
- https://github.com/Termix-SSH/Termix/commit/ddbdd5c437c2296607dfaa4265d6f63fbc1ca92e
- https://github.com/Termix-SSH/Termix/commit/fafff94e5e31c3843df06aa08773bbaa879bbede
- https://github.com/Termix-SSH/Termix/pull/1067
- https://github.com/Termix-SSH/Termix/releases/tag/release-2.5.1-tag
- https://github.com/Termix-SSH/Termix/security/advisories/GHSA-p2g3-2xq3-23gx
All references
- https://github.com/Termix-SSH/Termix/commit/ddbdd5c437c2296607dfaa4265d6f63fbc1ca92e
- https://github.com/Termix-SSH/Termix/commit/fafff94e5e31c3843df06aa08773bbaa879bbede
- https://github.com/Termix-SSH/Termix/pull/1067
- https://github.com/Termix-SSH/Termix/releases/tag/release-2.5.1-tag
- https://github.com/Termix-SSH/Termix/security/advisories/GHSA-p2g3-2xq3-23gx
Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.
Related CVEs
- HIGHCVE-2022-51019PoC
- HIGHCVE-2025-14754
- HIGHCVE-2026-100292
- HIGHCVE-2026-100368PoC
- UNSCOREDCVE-2026-100382
- HIGHCVE-2026-100559PoC
- HIGHCVE-2026-100599PoC
- HIGHCVE-2026-100844PoC
Related by shared AI tags and CWE weakness class. Browse the full archive.