7.5
CVSSv2

CVE-2015-7244

Published: 04/11/2015 Updated: 04/11/2015
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The default configuration of the server in MobaXterm prior to 8.3 has a disabled Access Control setting and consequently does not require authentication for X11 connections, which allows remote malicious users to execute arbitrary commands or obtain sensitive information via X11 packets.

Vulnerable Product Search on Vulmon Subscribe to Product

mobatek mobaxterm