CVE-2020-13173 Vulnerability Details

  /     /     /  

CVE-2020-13173 Metadata Quick Info

CVE Published: 28/05/2020 | CVE Updated: 04/08/2024 | CVE Year: 2020
Source: Teradici | Vendor: n/a | Product: PCoIP Standard Agent for Windows, PCoIP Graphics Agent for Windows
Status : PUBLISHED

CVE-2020-13173 Description

Initialization of the pcoip_credential_provider in Teradici PCoIP Standard Agent for Windows and PCoIP Graphics Agent for Windows versions 19.11.1 and earlier creates an insecure named pipe, which allows an attacker to intercept sensitive information or possibly elevate privileges via pre-installing an application which acquires that named pipe.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID:
CWE Name: Information Disclosure, Privilege Escalation
Source: n/a

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).