CVE-2021-25699

The OpenSSL component of the Teradici PCoIP Software Client prior to version 21.07.0 was compiled without the no-autoload-config option, which allowed an attacker to elevate to the privileges of the running process via placing a specially crafted dll in a build configuration directory.
References
Configurations

Configuration 1

cpe:2.3:a:teradici:pcoip_client:*:*:*:*:*:*:*:*

Information

Published : 2021-07-21 03:15

Updated : 2021-07-30 04:12


NVD link : CVE-2021-25699

Mitre link : CVE-2021-25699

Products Affected
CWE
CWE-426

Untrusted Search Path