CVE-2021-25695 Vulnerability Details

  /     /     /  

CVE-2021-25695 Metadata Quick Info

CVE Published: 21/07/2021 | CVE Updated: 03/08/2024 | CVE Year: 2021
Source: Teradici | Vendor: n/a | Product: - PCoIP Agent for Windows
Status : PUBLISHED

CVE-2021-25695 Description

The USB vHub in the Teradici PCOIP Software Agent prior to version 21.07.0 would accept commands from any program, which may allow an attacker to elevate privileges by changing the flow of program execution within the vHub driver.

Metrics

CVSS Version: 3.1 | Base Score: n/a
Vector: n/a

l➤ Exploitability Metrics:
    Attack Vector (AV)*
    Attack Complexity (AC)*
    Privileges Required (PR)*
    User Interaction (UI)*
    Scope (S)*

l➤ Impact Metrics:
    Confidentiality Impact (C)*
    Integrity Impact (I)*
    Availability Impact (A)*

Weakness Enumeration (CWE)

CWE-ID: CWE-782
CWE Name: Exposed IOCTL with Insufficient Access Control (CWE-782)
Source: n/a

Common Attack Pattern Enumeration and Classification (CAPEC)

CAPEC-ID:
CAPEC Description:


Source: NVD (National Vulnerability Database).