CVE-2019-18828
Summary
| CVE | CVE-2019-18828 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-12-16 17:15:00 UTC |
| Updated | 2020-08-24 17:37:00 UTC |
| Description | Barco ClickShare Button R9861500D01 devices before 1.9.0 have Insufficiently Protected Credentials. The root account (present for access via debug interfaces, which are by default not enabled on production devices) of the embedded Linux on the ClickShare Button is using a weak password. |
Risk And Classification
Problem Types: CWE-521
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Barco | Clickshare Cs-100 | - | All | All | All |
| Hardware | Barco | Clickshare Cs-100 | - | All | All | All |
| Operating System | Barco | Clickshare Cs-100 Firmware | All | All | All | All |
| Operating System | Barco | Clickshare Cs-100 Firmware | All | All | All | All |
| Hardware | Barco | Clickshare Cse-200 | - | All | All | All |
| Hardware | Barco | Clickshare Cse-200 | - | All | All | All |
| Hardware | Barco | Clickshare Cse-200 | - | All | All | All |
| Operating System | Barco | Clickshare Cse-200 Firmware | All | All | All | All |
| Hardware | Barco | Clickshare Cse-200 | - | All | All | All |
| Hardware | Barco | Clickshare Cse-200 | - | All | All | All |
| Operating System | Barco | Clickshare Cse-200 Firmware | All | All | All | All |
| Operating System | Barco | Clickshare Cse-200 Firmware | All | All | All | All |
| Operating System | Barco | Clickshare Cse-200 Firmware | All | All | All | All |
| Operating System | Barco | Clickshare Cse-200 Firmware | All | All | All | All |
| Hardware | Barco | Clickshare Cse-800 | - | All | All | All |
| Hardware | Barco | Clickshare Cse-800 | - | All | All | All |
| Operating System | Barco | Clickshare Cse-800 Firmware | All | All | All | All |
| Operating System | Barco | Clickshare Cse-800 Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| ClickShare CSE-200 base unit firmware - Software - Barco | MISC | www.barco.com | Product, Vendor Advisory |
| ClickShare CS-100 base unit firmware - Software - Barco | MISC | www.barco.com | Product, Vendor Advisory |
| ClickShare CSE-800 base unit firmware - Software - Barco | MISC | www.barco.com | Product, Vendor Advisory |
| Update your ClickShare firmware - Barco | MISC | www.barco.com | Product |
| ClickShare CSE-200+ base unit firmware - Software - Barco | MISC | www.barco.com | Product, Vendor Advisory |
| Multiple Vulnerabilities in Barco ClickShare | MISC | labs.f-secure.com | Third Party Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.