VYPR
Vendor

Teradata

Products
9
CVEs
7
Across products
11
Status
Private

Products

9

Recent CVEs

7
  • CVE-2016-7489CriNov 10, 2016
    risk 0.64cvss 9.8epss 0.04

    Teradata Virtual Machine Community Edition v15.10's perl script /opt/teradata/gsctools/bin/t2a.pl creates files in /tmp in an insecure manner, this may lead to elevated code execution.

  • CVE-2019-6499HigJan 21, 2019
    risk 0.53cvss 8.1epss 0.01

    Teradata Viewpoint before 14.0 and 16.20.00.02-b80 contains a hardcoded password of TDv1i2e3w4 for the viewpoint database account (in viewpoint-portal\conf\server.xml) that could potentially be exploited by malicious users to compromise the affected system.

  • CVE-2016-7490HigNov 10, 2016
    risk 0.51cvss 7.8epss 0.01

    The installation script studioexpressinstall for Teradata Studio Express 15.12.00.00 creates files in /tmp insecurely. A malicious local user could create a symlink in /tmp and possibly clobber system files or perhaps elevate privileges.

  • CVE-2016-7488HigNov 10, 2016
    risk 0.51cvss 7.8epss 0.01

    Teradata Virtual Machine Community Edition v15.10 has insecure file permissions on /etc/luminex/pkgmgr. These could allow a local user to modify its contents and execute commands as root.

  • CVE-2015-5401HigMay 23, 2017
    risk 0.49cvss 7.5epss 0.02

    Teradata Gateway before 15.00.03.02-1 and 15.10.x before 15.10.00.01-1 and TD Express before 15.00.02.08_Sles10 and 15.00.02.08_Sles11 allow remote attackers to cause a denial of service (database crash) via a malformed CONFIG REQUEST message.

  • CVE-2024-52870HigJan 17, 2025
    risk 0.46cvss 7.1epss 0.00

    Teradata Vantage Editor 1.0.1 is mostly intended for SQL database access and docs.teradata.com access, but provides unintended functionality (including Chromium Developer Tools) that can result in a client user accessing arbitrary remote websites.

  • CVE-2024-52869MedJan 8, 2025
    risk 0.39cvss 6.0epss 0.00

    Certain Teradata account-handling code through 2024-11-04, used with SUSE Enterprise Linux Server, mismanages groups. Specifically, when there is an operating system move from SUSE Enterprise Linux Server (SLES) 12 Service Pack (SP) 2 or 3 to SLES 15 SP2 on Teradata Database…