CVE-2020-10965

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
25/03/2020
Last modified:
21/07/2021

Description

Teradici PCoIP Management Console 20.01.0 and 19.11.1 is vulnerable to unauthenticated password resets via login/resetadminpassword of the default admin account. This vulnerability only exists when the default admin account is not disabled. It is fixed in 20.01.1 and 19.11.2.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:teradici:pcoip_management_console:19.11.1:*:*:*:*:*:*:*
cpe:2.3:a:teradici:pcoip_management_console:20.01.0:*:*:*:*:*:*:*