Vulnerability Description
Teradici PCoIP Management Console 20.01.0 and 19.11.1 is vulnerable to unauthenticated password resets via login/resetadminpassword of the default admin account. This vulnerability only exists when the default admin account is not disabled. It is fixed in 20.01.1 and 19.11.2.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Teradici | Pcoip Management Console | 19.11.1 |
Related Weaknesses (CWE)
References
- https://healdb.tech/blog.htmlExploitVendor Advisory
- https://help.teradici.com/s/article/3729PatchVendor Advisory
- https://healdb.tech/blog.htmlExploitVendor Advisory
- https://help.teradici.com/s/article/3729PatchVendor Advisory
FAQ
What is CVE-2020-10965?
CVE-2020-10965 is a vulnerability with a CVSS score of 8.1 (HIGH). Teradici PCoIP Management Console 20.01.0 and 19.11.1 is vulnerable to unauthenticated password resets via login/resetadminpassword of the default admin account. This vulnerability only exists when th...
How severe is CVE-2020-10965?
CVE-2020-10965 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-10965?
Check the references section above for vendor advisories and patch information. Affected products include: Teradici Pcoip Management Console.