Vulnerability index

Browse CVEs

38 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Control Room Management Suite HIGH 7.5
CVE-2022-26975

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing log files without authentication.

Fix: 3.14.1+
Fix from $1,950 2022-06-02
Control Room Management Suite MEDIUM 6.1
CVE-2022-26974

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a file upload mechanism. Lack of input san…

Fix: 3.14.1+
Fix from $1,600 2022-06-02
Control Room Management Suite MEDIUM 6.1
CVE-2022-26977

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license file upload mechanism. Lack of i…

Fix: 3.14.1+
Fix from $1,600 2022-06-02
Control Room Management Suite MEDIUM 6.1
CVE-2022-26978

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a URL /checklogin.jsp endpoint. The os_use…

Fix: 3.14.1+
Fix from $1,600 2022-06-02
Control Room Management Suite MEDIUM 5.4
CVE-2022-26976

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license file upload mechanism. Lack of i…

Fix: 3.14.1+
Fix from $1,600 2022-06-02
Control Room Management Suite MEDIUM 5.3
CVE-2022-26973

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license file upload mechanism. By tweaki…

Fix: 3.14.1+
Fix from $1,600 2022-06-02
Control Room Management Suite MEDIUM 6.1
CVE-2022-26972

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a URL /cgi-bin endpoint. The URL parameter…

Fix: 3.14.1+
Fix from $1,600 2022-06-02
Control Room Management Suite MEDIUM 5.3
CVE-2022-26971

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license file upload mechanism. This uplo…

Fix: 3.14.1+
Fix from $1,600 2022-06-02
Control Room Management Suite HIGH 7.5
CVE-2022-26233EPSS 15%

Barco Control Room Management through Suite 2.9 Build 0275 was discovered to be vulnerable to directory traversal, allowing attackers to access sensi…

Fix: after 2.9
Fix from $1,950 2022-04-03
Mirrorop Windows Sender HIGH 8.8
CVE-2021-38142

Barco MirrorOp Windows Sender before 2.5.3.65 uses cleartext HTTP and thus allows rogue software upgrades. An attacker on the local network can achie…

Fix: 2.5.3.65+
Fix from $1,950 2021-09-07
Mirrorop Windows Sender HIGH 7.8
CVE-2021-35482

An issue was discovered in Barco MirrorOp Windows Sender before 2.5.4.70. An attacker in the local network is able to achieve Remote Code Execution (…

Fix: 2.5.4.70+
Fix from $1,950 2021-07-21
Transform N HIGH 7.2
CVE-2020-17502

Barco TransForm N before 3.8 allows Command Injection (issue 2 of 4). The NDN-210 has a web administration panel which is made available over https. …

Fix: 3.8+
Fix from $1,950 2021-01-08
Transform N HIGH 7.2
CVE-2020-17503

The NDN-210 has a web administration panel which is made available over https. There is a command injection issue that will allow authenticated users…

Fix: 3.8+
Fix from $1,950 2021-01-08
Transform N HIGH 7.2
CVE-2020-17504

The NDN-210 has a web administration panel which is made available over https. There is a command injection issue that will allow authenticated users…

Fix: 3.8+
Fix from $1,950 2021-01-08
Transform N CRITICAL 9.8
CVE-2020-17500

Barco TransForm NDN-210 Lite, NDN-210 Pro, NDN-211 Lite, and NDN-211 Pro before 3.8 allows Command Injection (issue 1 of 4). The NDN-210 has a web ad…

Fix: 3.8+
Fix from $2,300 2021-01-07
Wepresent Wipg 1600w Firmware CRITICAL 9.8
CVE-2020-28329

Barco wePresent WiPG-1600W firmware includes a hardcoded API account and password that is discoverable by inspecting the firmware image. A malicious …

No fix yet
Fix from $2,300 2020-11-24
Wepresent Wipg 1600w Firmware CRITICAL 9.8
CVE-2020-28332

Barco wePresent WiPG-1600W devices download code without an Integrity Check. Affected Version(s): 2.5.1.8, 2.5.0.25, 2.5.0.24, 2.4.1.19. The Barco we…

No fix yet
Fix from $2,300 2020-11-24
Wepresent Wipg 1600w Firmware CRITICAL 9.8
CVE-2020-28333

Barco wePresent WiPG-1600W devices allow Authentication Bypass. Affected Version(s): 2.5.1.8. The Barco wePresent WiPG-1600W web interface does not u…

No fix yet
Fix from $2,300 2020-11-24
Wepresent Wipg 1600w Firmware CRITICAL 9.8
CVE-2020-28334

Barco wePresent WiPG-1600W devices use Hard-coded Credentials (issue 2 of 2). Affected Version(s): 2.5.1.8, 2.5.0.25, 2.5.0.24, 2.4.1.19. The Barco w…

No fix yet
Fix from $2,300 2020-11-24
Wepresent Wipg 1600w Firmware MEDIUM 6.5
CVE-2020-28330

Barco wePresent WiPG-1600W devices have Unprotected Transport of Credentials. Affected Version(s): 2.5.1.8. An attacker armed with hardcoded API cred…

No fix yet
Fix from $1,600 2020-11-24
Wepresent Wipg 1600w Firmware HIGH 7.5
CVE-2020-28331

Barco wePresent WiPG-1600W devices have Improper Access Control. Affected Version(s): 2.5.1.8. The Barco wePresent WiPG-1600W device has an SSH daemo…

No fix yet
Fix from $1,950 2020-11-24
Clickshare Button R9861500d01 Firmware MEDIUM 5.9
CVE-2019-18833

Barco ClickShare Button R9861500D01 devices before 1.9.0 allow Information exposure (issue 2 of 2).. The encryption key of the media content which is…

Fix: 1.9.0+
Fix from $1,600 2019-12-17
Clickshare Button R9861500d01 Firmware HIGH 8.1
CVE-2019-18832

Barco ClickShare Button R9861500D01 devices before 1.9.0 have incorrect Credentials Management. The ClickShare Button implements encryption at rest w…

Fix: 1.9.0+
Fix from $1,950 2019-12-17
Clickshare Button R9861500d01 Firmware HIGH 7.8
CVE-2019-18829

Barco ClickShare Button R9861500D01 devices before 1.10.0.13 have Missing Support for Integrity Check. The Barco signed 'Clickshare_For_Windows.exe' …

Fix: 1.10.0.13+
Fix from $1,950 2019-12-17
Clickshare Cs 100 Huddle Firmware HIGH 7.5
CVE-2019-18825

Barco ClickShare Huddle CS-100 devices before 1.9.0 and CSE-200 devices before 1.9.0 have incorrect Credentials Management. The ClickShare Base Unit …

Fix: 1.9.0+
Fix from $1,950 2019-12-17
Clickshare Button R9861500d01 Firmware MEDIUM 6.6
CVE-2019-18824

Barco ClickShare Button R9861500D01 devices before 1.10.0.13 have Missing Support for Integrity Check. The ClickShare Button does not verify the inte…

Fix: 1.10.0.13+
Fix from $1,600 2019-12-17
Clickshare Cs 100 Firmware CRITICAL 9.8
CVE-2019-18830

Barco ClickShare Button R9861500D01 devices before 1.9.0 allow OS Command Injection. The embedded 'dongle_bridge' program used to expose the function…

Fix: 1.9.0+
Fix from $2,300 2019-12-16
Clickshare Cs 100 Firmware MEDIUM 6.8
CVE-2019-18828

Barco ClickShare Button R9861500D01 devices before 1.9.0 have Insufficiently Protected Credentials. The root account (present for access via debug in…

Fix: 1.9.0+
Fix from $1,600 2019-12-16
Clickshare Cs 100 Firmware MEDIUM 5.3
CVE-2019-18831

Barco ClickShare Button R9861500D01 devices before 1.9.0 allow Information Exposure. The encrypted ClickShare Button firmware contains the private ke…

Fix: 1.9.0+
Fix from $1,600 2019-12-16
Clickshare Cs 100 Firmware CRITICAL 9.8
CVE-2019-18826

Barco ClickShare Button R9861500D01 devices before 1.9.0 have Improper Following of a Certificate's Chain of Trust. The embedded 'dongle_bridge' prog…

Fix: 1.9.0+
Fix from $2,300 2019-12-16