CVE-2022-1805
28.07.2022, 15:15
When connecting to Amazon Workspaces, the SHA256 presented by AWS connection provisioner is not fully verified by Zero Clients. The issue could be exploited by an adversary that places a MITM (Man in the Middle) between a zero client and AWS session provisioner in the network. This issue is only applicable when connecting to an Amazon Workspace from a PCoIP Zero Client.Enginsight
Vendor | Product | Version |
---|---|---|
teradici | tera2_pcoip_zero_client_firmware | 𝑥 < 22.01.5 |
teradici | tera2_pcoip_zero_client_firmware | 22.04 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration