Vulnerabilities > Teradici > Pcoip Client > High

DATE CVE VULNERABILITY TITLE RISK
2021-07-21 CVE-2021-25699 Untrusted Search Path vulnerability in Teradici Pcoip Client 19.08.3
The OpenSSL component of the Teradici PCoIP Software Client prior to version 21.07.0 was compiled without the no-autoload-config option, which allowed an attacker to elevate to the privileges of the running process via placing a specially crafted dll in a build configuration directory.
local
low complexity
teradici CWE-426
7.8
2020-01-08 CVE-2019-20362 Unquoted Search Path or Element vulnerability in Teradici products
In Teradici PCoIP Agent before 19.08.1 and PCoIP Client before 19.08.3, an unquoted service path can cause execution of %PROGRAMFILES(X86)%\Teradici\PCoIP.exe instead of the intended pcoip_vchan_printing_svc.exe file.
local
low complexity
teradici CWE-428
7.8