PT-2021-16760 · Teradici · Teradici Pcoip Graphics Agent For Windows

Published

2021-05-13

·

Updated

2021-05-25

·

CVE-2021-25694

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Teradici PCoIP Graphics Agent for Windows versions prior to 21.03
Description The issue concerns the lack of validation for the NVENC.dll file. An attacker could potentially replace this .dll, allowing them to redirect pixels elsewhere.
Recommendations For versions prior to 21.03, update to version 21.03 or later to resolve the issue. As a temporary workaround, consider restricting access to the NVENC.dll file to prevent potential tampering.

Fix

Uncontrolled Search Path Element

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-25694

Affected Products

Teradici Pcoip Graphics Agent For Windows