Unauthenticated Access to Sensitive Functions in Teradici Cloud Access Connector

Unauthenticated Access to Sensitive Functions in Teradici Cloud Access Connector

CVE-2020-13185 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Certain web application pages in the authenticated section of the Teradici Cloud Access Connector prior to v18 were accessible without the need to specify authentication tokens, which allowed an attacker in the ability to execute sensitive functions without credentials.

Learn more about our Web App Pen Testing.