CVE-2019-18828
6.8
Vector
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 0.9 / Impact: 5.9
Source: NVD
Description
Barco ClickShare Button R9861500D01 devices before 1.9.0 have Insufficiently Protected Credentials. The root account (present for access via debug interfaces, which are by default not enabled on production devices) of the embedded Linux on the ClickShare Button is using a weak password.
Affected (4)
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.9.0 |
| Running on/with | Platform Versions |
|---|---|
Barco Clickshare Cs 100 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.9.0 |
| Running on/with | Platform Versions |
|---|---|
Barco Clickshare Cse 200 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.9.0 |
| Running on/with | Platform Versions |
|---|---|
Barco Clickshare Cse 200+ | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Before 1.9.0 |
| Running on/with | Platform Versions |
|---|---|
Barco Clickshare Cse 800 | All versions |
References (12)
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: cve@mitre.org
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Product
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ProductVendor Advisory
Timeline
No history available yet.