Teracue manufactures video-encoding and streaming appliances such as the ENC-400 HDMI and ENC-400 HD-SDI lines, where observed vulnerabilities cluster around OS command injection, missing authentication for critical functions, and hard-coded credentials—weaknesses typical of embedded media devices with command-line or remote-control interfaces. Current severity, exploitation, and exposure details are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Teracue over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-20218CRITICAL An issue was discovered on Teracue ENC-400 devices with firmware 2.56 and below. The login form passes user input directly to a shell command without any kind of escaping or valida | Mar 21, 2019 | 9.8 | 44 | NO | YES |
CVE-2018-20219HIGH An issue was discovered on Teracue ENC-400 devices with firmware 2.56 and below. After successful authentication, the device sends an authentication cookie to the end user such tha | Mar 21, 2019 | 8.1 | 42 | NO | YES |
CVE-2018-20220HIGH An issue was discovered on Teracue ENC-400 devices with firmware 2.56 and below. While the web interface requires authentication before it can be interacted with, a large portion o | Mar 21, 2019 | 7.5 | 40 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Teracue.
Media articles that mention a CVE ID that affects a product developed by Teracue — matched by CVE ID, not by vendor name.