← Back

CVE-2019-3930

nvd nist
Published: Apr 30, 2019Modified: Jun 17, 2026

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

The Crestron AM-100 firmware 1.6.0.2, Crestron AM-101 firmware 2.7.0.1, Barco wePresent WiPG-1000P firmware 2.3.0.10, Barco wePresent WiPG-1600W before firmware 2.4.1.19, Extron ShareLink 200/250 firmware 2.0.3.4, Teq AV IT WIPS710 firmware 1.1.0.7, SHARP PN-L703WA firmware 1.4.2.3, Optoma WPS-Pro firmware 1.0.0.5, Blackbox HD WPS firmware 1.0.0.5, InFocus LiteShow3 firmware 1.0.16, and InFocus LiteShow4 2.0.0.7 are vulnerable to a stack buffer overflow in libAwgCgi.so's PARSERtoCHAR function. A remote, unauthenticated attacker can use this vulnerability to execute arbitrary code as root via a crafted request to the return.cgi endpoint.

Affected (12)

Show all products
2 products
Am 100 Firmware
Am 101 Firmware
2 products
Wepresent Wipg 1000p Firmware
Wepresent Wipg 1600w Firmware
2 products
Sharelink 200 Firmware
Sharelink 250 Firmware
1 product
Wips710 Firmware
1 product
Pn L703wa Firmware
1 product
Wps Pro Firmware
1 product
2 products
Liteshow3 Firmware
Liteshow4 Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1.6.0.2
Running on/withPlatform Versions
Crestron
Am 100
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 2.7.0.2
Running on/withPlatform Versions
Crestron
Am 101
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 2.3.0.10
Running on/withPlatform Versions
Barco
Wepresent Wipg 1000p
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Before 2.4.1.19
Running on/withPlatform Versions
Barco
Wepresent Wipg 1600w
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 2.0.3.4
Running on/withPlatform Versions
Extron
Sharelink 200
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 2.0.3.4
Running on/withPlatform Versions
Extron
Sharelink 250
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1.1.0.7
Running on/withPlatform Versions
Teqavit
Wips710
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1.4.2.3
Running on/withPlatform Versions
Sharp
Pn L703wa
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1.0.0.5
Running on/withPlatform Versions
Optoma
Wps Pro
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1.0.0.5
Running on/withPlatform Versions
Blackbox
Hd Wireless Presentation System
All versions
Configuration K
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 1.0.16
Running on/withPlatform Versions
Infocus
Liteshow3
All versions
Configuration L
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
Version 2.0.0.7
Running on/withPlatform Versions
Infocus
Liteshow4
All versions

References (2)

Source: vulnreport@tenable.com
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory

Timeline

No history available yet.