Skip to content
Noroxi

Teradici records

25 published records for vendor teradici.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
4%
Median publish → KEV
No record has entered KEV

All records

25 records
  • An out of bounds write in Teradici PCoIP soft client versions prior to version 20.10.1 could allow an attacker to remotely execute code.

    CriticalCVSS 9.8No exploitEPSS 2%

    teradici · pcoip soft clientFeb 11, 2021

  • Teradici PCoIP Management Console 20.01.0 and 19.11.1 is vulnerable to unauthenticated password resets via login/resetadminpassword of the d

    HighCVSS 8.1No exploitEPSS 1%

    teradici · pcoip management consoleMar 25, 2020

  • CVE-2022-1805
    32Monitor

    When connecting to Amazon Workspaces, the SHA256 presented by AWS connection provisioner is not fully verified by Zero Clients.

    HighCVSS 8.1No exploitEPSS 1%

    teradici · tera2 pcoip zero client firmwareJul 28, 2022

  • The Management Interface of the Teradici Cloud Access Connector and Cloud Access Connector Legacy for releases prior to April 20, 2020 (v15

    HighCVSS 7.5No exploitEPSS 2%

    teradici · cloud access connectorAug 11, 2020

  • In Teradici PCoIP Agent before 19.08.1 and PCoIP Client before 19.08.3, an unquoted service path can cause execution of %PROGRAMFILES(X86)%\

    HighCVSS 7.8No exploitEPSS 1%

    teradici · pcoip standard agentJan 8, 2020

  • The OpenSSL component of the Teradici PCoIP Software Client prior to version 21.07.0 was compiled without the no-autoload-config option, whi

    HighCVSS 7.8No exploitEPSS 0%

    teradici · pcoip clientJul 21, 2021

  • The OpenSSL component of the Teradici PCoIP Standard Agent prior to version 21.07.0 was compiled without the no-autoload-config option, whic

    HighCVSS 7.8No exploitEPSS 0%

    teradici · pcoip standard agentJul 21, 2021

  • Teradici Management Console Database Management privileges management

    HighCVSS 7.8No exploitEPSS 0%

    teradici · pcoip management consoleJun 30, 2022

  • The support bundler in Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows versions prior to 20.04.1 and 20.07.0 does n

    HighCVSS 7.8No exploitEPSS 0%

    teradici · graphics agentAug 11, 2020

  • The USB vHub in the Teradici PCOIP Software Agent prior to version 21.07.0 would accept commands from any program, which may allow an attack

    HighCVSS 7.8No exploitEPSS 0%

    teradici · pcoipJul 21, 2021

  • Teradici PCoIP Graphics Agent for Windows prior to 21.03 does not validate NVENC.dll.

    HighCVSS 7.8No exploitEPSS 0%

    teradici · pcoip graphics agentMay 13, 2021

  • Initialization of the pcoip_credential_provider in Teradici PCoIP Standard Agent for Windows and PCoIP Graphics Agent for Windows versions 1

    HighCVSS 7.8No exploitEPSS 0%

    teradici · pcoip graphics agentMay 28, 2020

  • A null pointer dereference in Teradici PCoIP Soft Client versions prior to 20.07.3 could allow an attacker to crash the software.

    HighCVSS 7.5No exploitEPSS 1%

    teradici · pcoip soft clientFeb 11, 2021

  • An attacker may cause a Denial of Service (DoS) in multiple versions of Teradici PCoIP Agent via a null pointer dereference.

    HighCVSS 7.5No exploitEPSS 1%

    teradici · pcoip agentMay 13, 2021

  • Certain web application pages in the authenticated section of the Teradici Cloud Access Connector prior to v18 were accessible without the n

    MediumCVSS 6.5No exploitEPSS 1%

    teradici · cloud access connectorFeb 11, 2021

  • An Anti CSRF mechanism was discovered missing in the Teradici Cloud Access Connector v31 and earlier in a specific web form, which allowed a

    MediumCVSS 6.5No exploitEPSS 0%

    teradici · cloud access connectorFeb 11, 2021

  • A function in the Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows prior to version 20.04.1 does not properly valida

    MediumCVSS 6.7No exploitEPSS 0%

    teradici · graphics agentAug 11, 2020

  • The Management Interface of the Teradici Cloud Access Connector and Cloud Access Connector Legacy for releases prior to April 24, 2020 (v16

    MediumCVSS 6.1No exploitEPSS 1%

    teradici · cloud access connectorAug 11, 2020

  • In Teradici PCoIP Management Console-Enterprise 20.07.0, an unauthenticated user can inject arbitrary text into user browser via the Web app

    MediumCVSS 6.1No exploitEPSS 1%

    teradici · pcoip management consoleJul 7, 2021

  • The web server in the Teradici Managament console versions 20.04 and 20.01.1 did not properly set the X-Frame-Options HTTP header, which cou

    MediumCVSS 6.1No exploitEPSS 1%

    teradici · pcoip management consoleAug 11, 2020

  • Reflected Cross Site Scripting in Teradici PCoIP Management Console prior to 20.07 could allow an attacker to take over the user's active se

    MediumCVSS 6.1No exploitEPSS 1%

    teradici · pcoip management consoleAug 17, 2020

  • Broker Protocol messages in Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows prior to 20.04.1 are not cleaned up in

    MediumCVSS 5.5No exploitEPSS 0%

    teradici · graphics agentAug 11, 2020

  • Under certain conditions, Teradici PCoIP Agents for Windows prior to version 20.10.0 and Teradici PCoIP Agents for Linux prior to version 21

    MediumCVSS 5.5No exploitEPSS 0%

    teradici · pcoip graphics agentFeb 11, 2021

  • The fUSBHub driver in the PCoIP Software Client prior to version 21.07.0 had an error in object management during the handling of a variety

    MediumCVSS 5.5No exploitEPSS 0%

    teradici · pcoip clientJul 21, 2021

  • Sensitive smart card data is logged in default INFO logs by Teradici's PCoIP Connection Manager and Security Gateway prior to version 21.01.

    MediumCVSS 4.6No exploitEPSS 0%

    teradici · pcoip connection manager and security gatewayApr 6, 2021