CVE-2024-48200: Mobatek Mobaxterm

High severity, CVSS 8.4. EPSS: 0.2% chance of exploitation in the next 30 days.

An issue in MobaXterm v24.2 allows a local attacker to escalate privileges and execute arbitrary code via the remove function of the MobaXterm MSI is spawning one Administrative cmd (conhost.exe)

Affected products

  • Mobatek Mobaxterm: version 24.2 only

Published 2024-10-31. Last modified 2026-06-17.