VYPR
Medium severity6.5NVD Advisory· Published Feb 11, 2021· Updated Jun 17, 2026

CVE-2020-13186

CVE-2020-13186

Description

An Anti CSRF mechanism was discovered missing in the Teradici Cloud Access Connector v31 and earlier in a specific web form, which allowed an attacker with knowledge of both a machineID and user GUID to modify data if a user clicked a malicious link.

Affected products

2
  • Teraway/Cloud Access Connectorllm-create2 versions
    <=31+ 1 more
    • (no CPE)range: <=31
    • cpe:2.3:a:teradici:cloud_access_connector:*:*:*:*:*:*:*:*range: <=31

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.