Cross Site Scripting Vulnerability in Teradek Brik Firmware
CVE-2021-37377
5.4MEDIUM
What is CVE-2021-37377?
The Teradek Brik firmware prior to version 7.2.x is susceptible to a Cross Site Scripting (XSS) vulnerability, allowing remote attackers to execute arbitrary code via manipulation of the Friendly Name field in System Information Settings. This security flaw arises from inadequate input sanitization. It is important to note that Teradek has declared the product as End of Life, meaning it will no longer receive firmware updates to mitigate this risk.
