Initialization of the pcoip_credential_provider in Teradici PCoIP Standard Agent for Windows and PCoIP Graphics Agent for Windows versions 19.11.1 and earlier creates an insecure named pipe, which allows an attacker to intercept sensitive information or possibly elevate privileges via pre-installing an application which acquires that named pipe.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://advisory.teradici.com/security-advisories/55/ |
History
No history.
MITRE
Status: PUBLISHED
Assigner: Teradici
Published: 2020-05-28T21:05:33
Updated: 2024-08-04T12:11:19.421Z
Reserved: 2020-05-19T00:00:00
Link: CVE-2020-13173
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-05-28T22:15:10.803
Modified: 2024-11-21T05:00:48.090
Link: CVE-2020-13173
Redhat
No data.