Arbitrary Code Execution Vulnerability in MobaXterm Personal Edition
CVE-2026-11879

8.5HIGH

Key Information:

Vendor

Mobatek

Vendor
CVE Published:
12 June 2026

What is CVE-2026-11879?

MobaXterm Personal Edition (Portable) version 26.3 (Build 5154) contains a vulnerability that allows local attackers to execute arbitrary code. The application attempts to load specific DLLs from a user-modifiable temporary directory before checking system secure paths. This design flaw permits an attacker with local access to place maliciously crafted DLL files in that directory, leading the application to execute them upon startup. Users are advised to be cautious and consider updating to the latest version to mitigate potential risks.

Affected Version(s)

MobaXterm Personal Edition (Portable) 26.3

MobaXterm Personal Edition (Portable) 26.4

References

CVSS V4

Score:
8.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Pedro J. Nunez-Cacho Fuentes (@tunelko)
.