Medium severity5.4NVD Advisory· Published Feb 3, 2023· Updated Jun 17, 2026
CVE-2021-37375
CVE-2021-37375
Description
Cross Site Scripting (XSS) vulnerability in Teradek VidiU / VidiU Mini firmware version 3.0.8 and earlier allows remote attackers to run arbitrary code via the Friendly Name field in System Information Settings. NOTE: Vedor states the product has reached End of Life and will not be receiving any firmware updates to address this issue.
Affected products
5(expand)+ 1 more
- (no CPE)
- (no CPE)range: <=3.0.8
- Range: <=3.0.8
Patches
Vulnerability mechanics
References
1- tbutler.org/2021/04/29/teradek-vulnerability-advisorynvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.