Vulnerability Description
Barco ClickShare CSC-1 devices with firmware before 01.09.03 allow remote attackers to obtain the root password by downloading and extracting the firmware image.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Barco | Clickshare Csc-1 Firmware | <= 01.09.02.03 |
| Barco | Clickshare Csc-1 | - |
Related Weaknesses (CWE)
References
- http://packetstormsecurity.com/files/139713/Barco-ClickShare-XSS-Remote-Code-ExeThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/539754/100/0/threaded
- http://www.securityfocus.com/bid/94326Third Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/139713/Barco-ClickShare-XSS-Remote-Code-ExeThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/archive/1/539754/100/0/threaded
- http://www.securityfocus.com/bid/94326Third Party AdvisoryVDB Entry
FAQ
What is CVE-2016-3152?
CVE-2016-3152 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Barco ClickShare CSC-1 devices with firmware before 01.09.03 allow remote attackers to obtain the root password by downloading and extracting the firmware image.
How severe is CVE-2016-3152?
CVE-2016-3152 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2016-3152?
Check the references section above for vendor advisories and patch information. Affected products include: Barco Clickshare Csc-1 Firmware, Barco Clickshare Csc-1.