CVE-2021-25694

HIGH

Teradici Pcoip Graphics Agent < 21.03 - Uncontrolled Search Path

Title source: rule

Description

Teradici PCoIP Graphics Agent for Windows prior to 21.03 does not validate NVENC.dll. An attacker could replace the .dll and redirect pixels elsewhere.

Scores

CVSS v3 7.8
EPSS 0.0006
EPSS Percentile 18.8%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-427
Status published

Affected Products (1)

teradici/pcoip_graphics_agent < 21.03

Timeline

Published May 13, 2021
Tracked Since Feb 18, 2026