Known Vulnerabilities for products from Barco

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Barco".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Additional devices specifications by Barco can be found at device.report : Barco

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2022-26978 json Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a URL /checklogin.... 6.1 - MEDIUM 2022-06-02 2022-06-09
CVE-2022-26977 json Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license file upl... 6.1 - MEDIUM 2022-06-02 2022-06-09
CVE-2022-26976 json Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license file upl... 5.4 - MEDIUM 2022-06-02 2022-06-09
CVE-2022-26975 json Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing log files without ... 7.5 - HIGH 2022-06-02 2022-06-09
CVE-2022-26974 json Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a file upload mech... 6.1 - MEDIUM 2022-06-02 2022-06-09
CVE-2022-26973 json Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license file upl... 5.3 - MEDIUM 2022-06-02 2022-06-09
CVE-2022-26972 json Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a URL /cgi-bin end... 6.1 - MEDIUM 2022-06-02 2022-06-09
CVE-2022-26971 json Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license file upl... 5.3 - MEDIUM 2022-06-02 2023-08-08
CVE-2022-26233 json Barco Control Room Management through Suite 2.9 Build 0275 was discovered to be vulnerable to directory traversal, allowing a... 7.5 - HIGH 2022-04-03 2022-04-11
CVE-2021-38142 json Barco MirrorOp Windows Sender before 2.5.3.65 uses cleartext HTTP and thus allows rogue software upgrades. An attacker on the... 8.8 - HIGH 2021-09-07 2022-07-12
CVE-2021-35482 json An issue was discovered in Barco MirrorOp Windows Sender before 2.5.4.70. An attacker in the local network is able to achieve... 7.8 - HIGH 2021-07-21 2021-07-30
CVE-2020-28334 json Barco wePresent WiPG-1600W devices use Hard-coded Credentials (issue 2 of 2). Affected Version(s): 2.5.1.8, 2.5.0.25, 2.5.0.2... 9.8 - CRITICAL 2020-11-24 2020-12-03
CVE-2020-28333 json Barco wePresent WiPG-1600W devices allow Authentication Bypass. Affected Version(s): 2.5.1.8. The Barco wePresent WiPG-1600W ... 9.8 - CRITICAL 2020-11-24 2021-07-21
CVE-2020-28332 json Barco wePresent WiPG-1600W devices download code without an Integrity Check. Affected Version(s): 2.5.1.8, 2.5.0.25, 2.5.0.24... 9.8 - CRITICAL 2020-11-24 2020-12-03
CVE-2020-28331 json Barco wePresent WiPG-1600W devices have Improper Access Control. Affected Version(s): 2.5.1.8. The Barco wePresent WiPG-1600W... 7.5 - HIGH 2020-11-24 2022-07-12
CVE-2020-28330 json Barco wePresent WiPG-1600W devices have Unprotected Transport of Credentials. Affected Version(s): 2.5.1.8. An attacker armed... 6.5 - MEDIUM 2020-11-24 2020-12-03
CVE-2020-28329 json Barco wePresent WiPG-1600W firmware includes a hardcoded API account and password that is discoverable by inspecting the firm... 9.8 - CRITICAL 2020-11-24 2020-12-04
CVE-2020-17504 json The NDN-210 has a web administration panel which is made available over https. There is a command injection issue that will a... 7.2 - HIGH 2021-01-08 2021-01-14
CVE-2020-17503 json The NDN-210 has a web administration panel which is made available over https. There is a command injection issue that will a... 7.2 - HIGH 2021-01-08 2021-01-14
CVE-2020-17502 json Barco TransForm N before 3.8 allows Command Injection (issue 2 of 4). The NDN-210 has a web administration panel which is mad... 7.2 - HIGH 2021-01-08 2021-01-13

Known software with vulnerabilities from Barco

Type Vendor Product Version
Operating
System
BarcoClickshare Button R9861500d01 Firmware-
Operating
System
BarcoClickshare Cs-100 Firmware-
HardwareBarcoClickshare Cse-200-
Operating
System
BarcoClickshare Cse-200 Firmware-
Operating
System
BarcoClickshare Cse-200 Firmware-
HardwareBarcoClickshare Cse-800-
Operating
System
BarcoClickshare Cse-800 Firmware-
Operating
System
BarcoTransform N-
Operating
System
BarcoWepresent Wipg-1600w Firmware2.5.0.24