First published: Mon Oct 30 2017(Updated: )
A command injection was identified on Barco ClickShare Base Unit devices with CSM-1 firmware before 1.7.0.3 and CSC-1 firmware before 1.10.0.10. An attacker with access to the product's web API can exploit this vulnerability to completely compromise the vulnerable device.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Barco ClickShare CSM-1 firmware | <1.7.0.3 | |
Barco ClickShare CSM-1 | ||
Barco Clickshare Csc-1 Firmware | <1.10.0.10 | |
Barco ClickShare CSC-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2017-9377.
The severity of CVE-2017-9377 is critical with a severity value of 8.8.
Barco ClickShare CSM-1 firmware versions up to 1.7.0.3 and CSC-1 firmware versions up to 1.10.0.10 are affected by CVE-2017-9377.
An attacker with access to the product's web API can exploit CVE-2017-9377 to completely compromise the vulnerable device.
Yes, you can find references for CVE-2017-9377 at these links: [http://www.securityfocus.com/bid/101617](http://www.securityfocus.com/bid/101617), [https://www.barco.com/en/Support/software/R33050037](https://www.barco.com/en/Support/software/R33050037), [https://www.barco.com/en/support/software/R33050020](https://www.barco.com/en/support/software/R33050020).