CVE-2017-15376: Mobatek Mobaxterm
Critical severity, CVSS 9.8. EPSS: 3.8% chance of exploitation in the next 30 days.
The TELNET service in Mobatek MobaXterm 10.4 does not require authentication, which allows remote attackers to execute arbitrary commands via TCP port 23.
Affected products
- Mobatek Mobaxterm: version 10.4 only
Published 2017-10-16. Last modified 2026-06-17.