PT-2020-10398 · Teradici · Teradici Pcoip Agent+1

Published

2020-01-08

·

Updated

2020-01-17

·

CVE-2019-20362

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Teradici PCoIP Agent versions prior to 19.08.1 Teradici PCoIP Client versions prior to 19.08.3
Description The issue arises from an unquoted service path, leading to the execution of %PROGRAMFILES(X86)%TeradiciPCoIP.exe instead of the intended pcoip vchan printing svc.exe file.
Recommendations For Teradici PCoIP Agent versions prior to 19.08.1, update to version 19.08.1 or later. For Teradici PCoIP Client versions prior to 19.08.3, update to version 19.08.3 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-20362

Affected Products

Teradici Pcoip Agent
Teradici Pcoip Client