Mobatek Vulnerabilities and Affected Products
Vulnerabilities associated with Mobatek MobaXterm.
Products
Clear product- MobaXterm3 vulnerabilities
- MobaXterm Personal Edition (Portable)2 vulnerabilities
- Mobatek MobaXterm1 vulnerability
- MobaXterm Home Edition1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2019-25741CRITICAL | Mobatek MobaXterm 12.1 Buffer Overflow via Sessions FileMobatek MobaXterm 12.1 contains a structured exception handling (SEH) based buffer overflow vulnerability in the username field of session files that allows remote attackers to execute arbitrary code. Attackers can craft a malicious MobaXterm sessions file with overflow data that triggers the vulnerability when imported and executed, enabling reverse shell execution with user privileges. CWE-120Jun 4, 2026 | CVSS9.3v4.0 | EPSS0.638% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |