First published: Mon Dec 16 2019(Updated: )
Barco ClickShare Button R9861500D01 devices before 1.9.0 have Insufficiently Protected Credentials. The root account (present for access via debug interfaces, which are by default not enabled on production devices) of the embedded Linux on the ClickShare Button is using a weak password.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Barco Clickshare Cs-100 Firmware | <1.9.0 | |
Barco Clickshare Cs-100 | ||
Barco Clickshare Cse-200 Firmware | <1.9.0 | |
Barco ClickShare CSE-200 | ||
Barco Clickshare Cse-200\+ Firmware | <1.9.0 | |
Barco Clickshare Cse-200\+ | ||
Barco Clickshare Cse-800 Firmware | <1.9.0 | |
Barco Clickshare Cse-800 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-18828 is a vulnerability found in Barco ClickShare Button R9861500D01 devices before version 1.9.0.
The severity of CVE-2019-18828 is high, with a CVSS score of 6.8.
To fix CVE-2019-18828, you should update the firmware of your Barco ClickShare Button to version 1.9.0 or later.
No, Barco ClickShare CS-100 devices are not affected by CVE-2019-18828.
You can find more information about CVE-2019-18828 on the F-Secure Labs advisories webpage and the Barco support webpage.