Teradici, now part of HP, provides remote desktop and graphics acceleration software serving virtualized workstation and cloud access use cases, with a footprint spanning agent deployments, management consoles, and access connectors across enterprise environments. The vendor's disclosures cluster around a small, specialized product portfolio but achieve prominence within the remote-access and graphics-rendering sector, where secure session management and input handling are structural requirements. Recurring vulnerability classes center on cross-site scripting, authentication weaknesses, NULL-pointer conditions, and search-path manipulation that reflect the complexity of agent-console communication and web-facing management interfaces. Defenders relying on Teradici remote-access infrastructure should track the vendor's advisories closely and prioritize remediation of exposed management consoles; current severity, exploitation activity, and vulnerability counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Teradici (HP) over time
Of all the CVEs published by Teradici (HP) as a CNA, 100.0% affect products that Teradici (HP) develops as a vendor.
Of all the CVEs published that affect products developed by Teradici (HP), 80.0% are self-published by Teradici (HP) as a CNA.
Signals from CVEs in this vendor scope (25 CVEs).
25 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-25689CRITICAL An out of bounds write in Teradici PCoIP soft client versions prior to version 20.10.1 could allow an attacker to remotely execute code. | Feb 11, 2021 | 9.8 | 28 | NO | NO |
CVE-2017-20121HIGH A vulnerability was found in Teradici Management Console 2.2.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Databa | Jun 30, 2022 | 7.8 | 26 | NO | NO |
CVE-2020-13175HIGH The Management Interface of the Teradici Cloud Access Connector and Cloud Access Connector Legacy for releases prior to April 20, 2020 (v15 and earlier for Cloud Access Connector) | Aug 11, 2020 | 7.5 | 25 | NO | NO |
CVE-2020-10965HIGH Teradici PCoIP Management Console 20.01.0 and 19.11.1 is vulnerable to unauthenticated password resets via login/resetadminpassword of the default admin account. This vulnerability | Mar 25, 2020 | 8.1 | 25 | NO | NO |
CVE-2021-25699HIGH The OpenSSL component of the Teradici PCoIP Software Client prior to version 21.07.0 was compiled without the no-autoload-config option, which allowed an attacker to elevate to the | Jul 21, 2021 | 7.8 | 24 | NO | NO |
CVE-2021-25698HIGH The OpenSSL component of the Teradici PCoIP Standard Agent prior to version 21.07.0 was compiled without the no-autoload-config option, which allowed an attacker to elevate to the | Jul 21, 2021 | 7.8 | 24 | NO | NO |
CVE-2021-25695HIGH The USB vHub in the Teradici PCOIP Software Agent prior to version 21.07.0 would accept commands from any program, which may allow an attacker to elevate privileges by changing the | Jul 21, 2021 | 7.8 | 24 | NO | NO |
CVE-2021-25693HIGH An attacker may cause a Denial of Service (DoS) in multiple versions of Teradici PCoIP Agent via a null pointer dereference. | May 13, 2021 | 7.5 | 24 | NO | NO |
CVE-2021-25694HIGH Teradici PCoIP Graphics Agent for Windows prior to 21.03 does not validate NVENC.dll. An attacker could replace the .dll and redirect pixels elsewhere. | May 13, 2021 | 7.8 | 24 | NO | NO |
CVE-2021-25690HIGH A null pointer dereference in Teradici PCoIP Soft Client versions prior to 20.07.3 could allow an attacker to crash the software. | Feb 11, 2021 | 7.5 | 23 | NO | NO |
Signals from CVEs in this vendor scope (25 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Teradici (HP).
Media articles that mention a CVE ID that affects a product developed by Teradici (HP) — matched by CVE ID, not by vendor name.