Vulnerability Details CVE-2020-13185
Certain web application pages in the authenticated section of the Teradici Cloud Access Connector prior to v18 were accessible without the need to specify authentication tokens, which allowed an attacker in the ability to execute sensitive functions without credentials.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 45.9%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 4.3
Products affected by CVE-2020-13185
-
cpe:2.3:a:teradici:cloud_access_connector:-
-
cpe:2.3:a:teradici:cloud_access_connector:11
-
cpe:2.3:a:teradici:cloud_access_connector:12
-
cpe:2.3:a:teradici:cloud_access_connector:13
-
cpe:2.3:a:teradici:cloud_access_connector:14
-
cpe:2.3:a:teradici:cloud_access_connector:15
-
cpe:2.3:a:teradici:cloud_access_connector:16
-
cpe:2.3:a:teradici:cloud_access_connector:17