Skip to content

Instantly share code, notes, and snippets.

@rvismit
Last active July 7, 2021 16:33
Show Gist options
  • Star 1 You must be signed in to star a gist
  • Fork 0 You must be signed in to fork a gist
  • Save rvismit/578f9f98d79f22d81a5e45dbbc0b4fa4 to your computer and use it in GitHub Desktop.
Save rvismit/578f9f98d79f22d81a5e45dbbc0b4fa4 to your computer and use it in GitHub Desktop.
CVE-2021-35451
Product : Teradici
CVE : CVE-2021-35451
Version : 20.07.0
Vulnerability : Content/Text Injection
Vulnerability Description : A vulnerability could allow an unauthenticated remote user to inject arbitary text into user browser.
#Steps to Reproduce
1). Navigate to Teradici PCoIP Console
2). Enter any random values for login
3). In URL after login_error=1&flash=<text>*
*text=please+use+default+password
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment