Barco ClickShare Button R9861500D01 devices before 1.9.0 have Improper Following of a Certificate's Chain of Trust. The embedded 'dongle_bridge' program used to expose the functionalities of the ClickShare Button to a USB host, does not properly validate the whole certificate chain.
References
Link | Resource |
---|---|
https://www.barco.com/en/clickshare/firmware-update | Product Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Information
Published : 2019-12-16 09:15
Updated : 2019-12-26 17:14
NVD link : CVE-2019-18826
Mitre link : CVE-2019-18826
JSON object : View
CWE
CWE-295
Improper Certificate Validation
Products Affected
barco
- clickshare_cse-800_firmware
- clickshare_cs-100_firmware
- clickshare_cse-800
- clickshare_cs-100
- clickshare_cse-200\+
- clickshare_cse-200\+_firmware
- clickshare_cse-200_firmware
- clickshare_cse-200