Barco ClickShare Button R9861500D01 devices before 1.9.0 have incorrect Credentials Management. The ClickShare Button implements encryption at rest which uses a one-time programmable (OTP) AES encryption key. This key is shared across all ClickShare Buttons of model R9861500D01.
References
Link | Resource |
---|---|
https://labs.f-secure.com/advisories/multiple-vulnerabilities-in-barco-clickshare/ | Exploit Third Party Advisory |
https://www.barco.com/en/clickshare/firmware-update | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2019-12-17T13:51:58
Updated: 2019-12-17T13:51:58
Reserved: 2019-11-07T00:00:00
Link: CVE-2019-18832
JSON object: View
NVD Information
Status : Analyzed
Published: 2019-12-17T14:15:17.967
Modified: 2021-07-21T11:39:23.747
Link: CVE-2019-18832
JSON object: View
Redhat Information
No data.
CWE