Записи Teradici
25 опубликованных записей вендора teradici.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 4 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-427 Uncontrolled Search Path Element2
- CWE-426 Untrusted Search Path2
- CWE-476 NULL Pointer Dereference2
- CWE-295 Improper Certificate Validation1
- CWE-312 Cleartext Storage of Sensitive Information1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
25 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2021-25689Эксплойта нет | An out of bounds write in Teradici PCoIP soft client versions prior to version 20.10.1 could allow an attacker to remotely execute code.teradici · pcoip soft client · CWE-787 | Критическая9,8 | — | 1,6 % | 11 февр. 2021 г. |
32Наблюдать | CVE-2020-10965Эксплойта нет | Teradici PCoIP Management Console 20.01.0 and 19.11.1 is vulnerable to unauthenticated password resets via login/resetadminpassword of the dteradici · pcoip management console · CWE-287 | Высокая8,1 | — | 1,5 % | 25 мар. 2020 г. |
32Наблюдать | CVE-2022-1805Эксплойта нет | When connecting to Amazon Workspaces, the SHA256 presented by AWS connection provisioner is not fully verified by Zero Clients.teradici · tera2 pcoip zero client firmware · CWE-295 | Высокая8,1 | — | 0,6 % | 28 июл. 2022 г. |
31Наблюдать | CVE-2020-13175Эксплойта нет | The Management Interface of the Teradici Cloud Access Connector and Cloud Access Connector Legacy for releases prior to April 20, 2020 (v15 teradici · cloud access connector · CWE-98 | Высокая7,5 | — | 1,7 % | 11 авг. 2020 г. |
31Наблюдать | CVE-2019-20362Эксплойта нет | In Teradici PCoIP Agent before 19.08.1 and PCoIP Client before 19.08.3, an unquoted service path can cause execution of %PROGRAMFILES(X86)%\teradici · pcoip standard agent · CWE-428 | Высокая7,8 | — | 0,7 % | 8 янв. 2020 г. |
31Наблюдать | CVE-2021-25699Эксплойта нет | The OpenSSL component of the Teradici PCoIP Software Client prior to version 21.07.0 was compiled without the no-autoload-config option, whiteradici · pcoip client · CWE-426 | Высокая7,8 | — | 0,4 % | 21 июл. 2021 г. |
31Наблюдать | CVE-2021-25698Эксплойта нет | The OpenSSL component of the Teradici PCoIP Standard Agent prior to version 21.07.0 was compiled without the no-autoload-config option, whicteradici · pcoip standard agent · CWE-426 | Высокая7,8 | — | 0,4 % | 21 июл. 2021 г. |
31Наблюдать | CVE-2017-20121Эксплойта нет | Teradici Management Console Database Management privileges managementteradici · pcoip management console · CWE-269 | Высокая7,8 | — | 0,4 % | 30 июн. 2022 г. |
31Наблюдать | CVE-2020-13177Эксплойта нет | The support bundler in Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows versions prior to 20.04.1 and 20.07.0 does nteradici · graphics agent · CWE-427 | Высокая7,8 | — | 0,4 % | 11 авг. 2020 г. |
31Наблюдать | CVE-2021-25695Эксплойта нет | The USB vHub in the Teradici PCOIP Software Agent prior to version 21.07.0 would accept commands from any program, which may allow an attackteradici · pcoip · CWE-782 | Высокая7,8 | — | 0,3 % | 21 июл. 2021 г. |
31Наблюдать | CVE-2021-25694Эксплойта нет | Teradici PCoIP Graphics Agent for Windows prior to 21.03 does not validate NVENC.dll.teradici · pcoip graphics agent · CWE-427 | Высокая7,8 | — | 0,3 % | 13 мая 2021 г. |
31Наблюдать | CVE-2020-13173Эксплойта нет | Initialization of the pcoip_credential_provider in Teradici PCoIP Standard Agent for Windows and PCoIP Graphics Agent for Windows versions 1teradici · pcoip graphics agent · CWE-362 | Высокая7,8 | — | 0,2 % | 28 мая 2020 г. |
30Наблюдать | CVE-2021-25690Эксплойта нет | A null pointer dereference in Teradici PCoIP Soft Client versions prior to 20.07.3 could allow an attacker to crash the software.teradici · pcoip soft client · CWE-476 | Высокая7,5 | — | 1,0 % | 11 февр. 2021 г. |
30Наблюдать | CVE-2021-25693Эксплойта нет | An attacker may cause a Denial of Service (DoS) in multiple versions of Teradici PCoIP Agent via a null pointer dereference.teradici · pcoip agent · CWE-476 | Высокая7,5 | — | 1,0 % | 13 мая 2021 г. |
26Наблюдать | CVE-2020-13185Эксплойта нет | Certain web application pages in the authenticated section of the Teradici Cloud Access Connector prior to v18 were accessible without the nteradici · cloud access connector · CWE-288 | Средняя6,5 | — | 1,0 % | 11 февр. 2021 г. |
26Наблюдать | CVE-2020-13186Эксплойта нет | An Anti CSRF mechanism was discovered missing in the Teradici Cloud Access Connector v31 and earlier in a specific web form, which allowed ateradici · cloud access connector · CWE-352 | Средняя6,5 | — | 0,4 % | 11 февр. 2021 г. |
26Наблюдать | CVE-2020-13178Эксплойта нет | A function in the Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows prior to version 20.04.1 does not properly validateradici · graphics agent · CWE-345 | Средняя6,7 | — | 0,2 % | 11 авг. 2020 г. |
24Наблюдать | CVE-2020-13176Эксплойта нет | The Management Interface of the Teradici Cloud Access Connector and Cloud Access Connector Legacy for releases prior to April 24, 2020 (v16 teradici · cloud access connector · CWE-79 | Средняя6,1 | — | 0,8 % | 11 авг. 2020 г. |
24Наблюдать | CVE-2021-35451Эксплойта нет | In Teradici PCoIP Management Console-Enterprise 20.07.0, an unauthenticated user can inject arbitrary text into user browser via the Web appteradici · pcoip management console · CWE-79 | Средняя6,1 | — | 0,7 % | 7 июл. 2021 г. |
24Наблюдать | CVE-2020-13174Эксплойта нет | The web server in the Teradici Managament console versions 20.04 and 20.01.1 did not properly set the X-Frame-Options HTTP header, which couteradici · pcoip management console · CWE-1021 | Средняя6,1 | — | 0,7 % | 11 авг. 2020 г. |
24Наблюдать | CVE-2020-13183Эксплойта нет | Reflected Cross Site Scripting in Teradici PCoIP Management Console prior to 20.07 could allow an attacker to take over the user's active seteradici · pcoip management console · CWE-79 | Средняя6,1 | — | 0,6 % | 17 авг. 2020 г. |
22Наблюдать | CVE-2020-13179Эксплойта нет | Broker Protocol messages in Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows prior to 20.04.1 are not cleaned up in teradici · graphics agent · CWE-200 | Средняя5,5 | — | 0,3 % | 11 авг. 2020 г. |
22Наблюдать | CVE-2021-25688Эксплойта нет | Under certain conditions, Teradici PCoIP Agents for Windows prior to version 20.10.0 and Teradici PCoIP Agents for Linux prior to version 21teradici · pcoip graphics agent · CWE-532 | Средняя5,5 | — | 0,3 % | 11 февр. 2021 г. |
22Наблюдать | CVE-2021-25701Эксплойта нет | The fUSBHub driver in the PCoIP Software Client prior to version 21.07.0 had an error in object management during the handling of a variety teradici · pcoip client · CWE-400 | Средняя5,5 | — | 0,2 % | 21 июл. 2021 г. |
18Наблюдать | CVE-2021-25692Эксплойта нет | Sensitive smart card data is logged in default INFO logs by Teradici's PCoIP Connection Manager and Security Gateway prior to version 21.01.teradici · pcoip connection manager and security gateway · CWE-312 | Средняя4,6 | — | 0,2 % | 6 апр. 2021 г. |
- CVE-2021-2568939Наблюдать
An out of bounds write in Teradici PCoIP soft client versions prior to version 20.10.1 could allow an attacker to remotely execute code.
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %teradici · pcoip soft client11 февр. 2021 г.
- CVE-2020-1096532Наблюдать
Teradici PCoIP Management Console 20.01.0 and 19.11.1 is vulnerable to unauthenticated password resets via login/resetadminpassword of the d
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %teradici · pcoip management console25 мар. 2020 г.
- CVE-2022-180532Наблюдать
When connecting to Amazon Workspaces, the SHA256 presented by AWS connection provisioner is not fully verified by Zero Clients.
ВысокаяCVSS 8,1Эксплойта нетEPSS 1 %teradici · tera2 pcoip zero client firmware28 июл. 2022 г.
- CVE-2020-1317531Наблюдать
The Management Interface of the Teradici Cloud Access Connector and Cloud Access Connector Legacy for releases prior to April 20, 2020 (v15
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %teradici · cloud access connector11 авг. 2020 г.
- CVE-2019-2036231Наблюдать
In Teradici PCoIP Agent before 19.08.1 and PCoIP Client before 19.08.3, an unquoted service path can cause execution of %PROGRAMFILES(X86)%\
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %teradici · pcoip standard agent8 янв. 2020 г.
- CVE-2021-2569931Наблюдать
The OpenSSL component of the Teradici PCoIP Software Client prior to version 21.07.0 was compiled without the no-autoload-config option, whi
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %teradici · pcoip client21 июл. 2021 г.
- CVE-2021-2569831Наблюдать
The OpenSSL component of the Teradici PCoIP Standard Agent prior to version 21.07.0 was compiled without the no-autoload-config option, whic
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %teradici · pcoip standard agent21 июл. 2021 г.
- CVE-2017-2012131Наблюдать
Teradici Management Console Database Management privileges management
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %teradici · pcoip management console30 июн. 2022 г.
- CVE-2020-1317731Наблюдать
The support bundler in Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows versions prior to 20.04.1 and 20.07.0 does n
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %teradici · graphics agent11 авг. 2020 г.
- CVE-2021-2569531Наблюдать
The USB vHub in the Teradici PCOIP Software Agent prior to version 21.07.0 would accept commands from any program, which may allow an attack
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %teradici · pcoip21 июл. 2021 г.
- CVE-2021-2569431Наблюдать
Teradici PCoIP Graphics Agent for Windows prior to 21.03 does not validate NVENC.dll.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %teradici · pcoip graphics agent13 мая 2021 г.
- CVE-2020-1317331Наблюдать
Initialization of the pcoip_credential_provider in Teradici PCoIP Standard Agent for Windows and PCoIP Graphics Agent for Windows versions 1
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %teradici · pcoip graphics agent28 мая 2020 г.
- CVE-2021-2569030Наблюдать
A null pointer dereference in Teradici PCoIP Soft Client versions prior to 20.07.3 could allow an attacker to crash the software.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %teradici · pcoip soft client11 февр. 2021 г.
- CVE-2021-2569330Наблюдать
An attacker may cause a Denial of Service (DoS) in multiple versions of Teradici PCoIP Agent via a null pointer dereference.
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %teradici · pcoip agent13 мая 2021 г.
- CVE-2020-1318526Наблюдать
Certain web application pages in the authenticated section of the Teradici Cloud Access Connector prior to v18 were accessible without the n
СредняяCVSS 6,5Эксплойта нетEPSS 1 %teradici · cloud access connector11 февр. 2021 г.
- CVE-2020-1318626Наблюдать
An Anti CSRF mechanism was discovered missing in the Teradici Cloud Access Connector v31 and earlier in a specific web form, which allowed a
СредняяCVSS 6,5Эксплойта нетEPSS 0 %teradici · cloud access connector11 февр. 2021 г.
- CVE-2020-1317826Наблюдать
A function in the Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows prior to version 20.04.1 does not properly valida
СредняяCVSS 6,7Эксплойта нетEPSS 0 %teradici · graphics agent11 авг. 2020 г.
- CVE-2020-1317624Наблюдать
The Management Interface of the Teradici Cloud Access Connector and Cloud Access Connector Legacy for releases prior to April 24, 2020 (v16
СредняяCVSS 6,1Эксплойта нетEPSS 1 %teradici · cloud access connector11 авг. 2020 г.
- CVE-2021-3545124Наблюдать
In Teradici PCoIP Management Console-Enterprise 20.07.0, an unauthenticated user can inject arbitrary text into user browser via the Web app
СредняяCVSS 6,1Эксплойта нетEPSS 1 %teradici · pcoip management console7 июл. 2021 г.
- CVE-2020-1317424Наблюдать
The web server in the Teradici Managament console versions 20.04 and 20.01.1 did not properly set the X-Frame-Options HTTP header, which cou
СредняяCVSS 6,1Эксплойта нетEPSS 1 %teradici · pcoip management console11 авг. 2020 г.
- CVE-2020-1318324Наблюдать
Reflected Cross Site Scripting in Teradici PCoIP Management Console prior to 20.07 could allow an attacker to take over the user's active se
СредняяCVSS 6,1Эксплойта нетEPSS 1 %teradici · pcoip management console17 авг. 2020 г.
- CVE-2020-1317922Наблюдать
Broker Protocol messages in Teradici PCoIP Standard Agent for Windows and Graphics Agent for Windows prior to 20.04.1 are not cleaned up in
СредняяCVSS 5,5Эксплойта нетEPSS 0 %teradici · graphics agent11 авг. 2020 г.
- CVE-2021-2568822Наблюдать
Under certain conditions, Teradici PCoIP Agents for Windows prior to version 20.10.0 and Teradici PCoIP Agents for Linux prior to version 21
СредняяCVSS 5,5Эксплойта нетEPSS 0 %teradici · pcoip graphics agent11 февр. 2021 г.
- CVE-2021-2570122Наблюдать
The fUSBHub driver in the PCoIP Software Client prior to version 21.07.0 had an error in object management during the handling of a variety
СредняяCVSS 5,5Эксплойта нетEPSS 0 %teradici · pcoip client21 июл. 2021 г.
- CVE-2021-2569218Наблюдать
Sensitive smart card data is logged in default INFO logs by Teradici's PCoIP Connection Manager and Security Gateway prior to version 21.01.
СредняяCVSS 4,6Эксплойта нетEPSS 0 %teradici · pcoip connection manager and security gateway6 апр. 2021 г.