PT-2022-24374 · Mobaxterm · Mobaxterm

Published

2022-12-05

·

Updated

2022-12-06

·

CVE-2022-38336

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions MobaXterm versions prior to 22.1
Description An access control issue allows attackers to make connections to the server via the SSH or SFTP protocols without authentication.
Recommendations For versions prior to 22.1, update to version 22.1 or later to resolve the issue.

Exploit

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2022-38336

Affected Products

Mobaxterm