Security Advisory

CVE-2015-7244

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2015-11-04 02:00:00
Last updated 2024-08-06 07:43:45
Assigner certcc
CVSS score not scored
State PUBLISHED

Description

The default configuration of the server in MobaXterm before 8.3 has a disabled Access Control setting and consequently does not require authentication for X11 connections, which allows remote attackers to execute arbitrary commands or obtain sensitive information via X11 packets.