CVE-2020-28332: Critical severity barco wepresent wipg-1600w firmware vulnerability
Published Nov 24, 2020
·Updated
Barco wePresent WiPG-1600W devices download code without an Integrity Check. Affected Version(s): 2.5.1.8, 2.5.0.25, 2.5.0.24, 2.4.1.19. The Barco wePresent WiPG-1600W firmware does not perform verification of digitally signed firmware updates and is susceptible to processing and installing modified/malicious images.
Affected Software
2 affected components
Barco wePresent WiPG-1600W firmware=2.5.1.8
Barco wePresent WiPG-1600W
Event History
Nov 24, 2020
CVE Published
via MITRE·06:23 PM
Data Sourced
via MITRE·06:23 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-28332.
2
What is the severity of CVE-2020-28332?
The severity of CVE-2020-28332 is critical with a severity value of 9.8.
3
Which Barco wePresent WiPG-1600W firmware versions are affected by CVE-2020-28332?
The affected versions are 2.5.1.8, 2.5.0.25, 2.5.0.24, and 2.4.1.19.
4
What is the vulnerability description for CVE-2020-28332?
Barco wePresent WiPG-1600W devices download code without an Integrity Check.
5
Is there a fix available for CVE-2020-28332?
Currently, there is no available fix for CVE-2020-28332. It is recommended to contact the vendor for further information.