PT-2018-10199 · Barco · Barco Clickshare Cs-100 Base Unit+1
Published
2018-07-10
·
Updated
2018-09-11
·
CVE-2018-10943
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Barco ClickShare CSE-200 and CS-100 Base Units versions prior to 1.6.0.3
Description
An issue was discovered where sending an arbitrary unexpected string to the TCP port 7100, respecting a certain frequency timing, can disconnect all clients and result in a crash of the unit.
Recommendations
For versions prior to 1.6.0.3, update the firmware to version 1.6.0.3 or later to resolve the issue. As a temporary workaround, consider restricting access to TCP port 7100 to minimize the risk of exploitation.
Fix
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Barco Clickshare Cs-100 Base Unit
Barco Clickshare Cse-200