Vulnerabilities > Barco > Clickshare CSC 1 Firmware > 01.09.05.02

DATE CVE VULNERABILITY TITLE RISK
2017-10-30 CVE-2017-9377 OS Command Injection vulnerability in Barco products
A command injection was identified on Barco ClickShare Base Unit devices with CSM-1 firmware before 1.7.0.3 and CSC-1 firmware before 1.10.0.10.
network
low complexity
barco CWE-78
8.8
2017-10-30 CVE-2017-12460 Cross-site Scripting vulnerability in Barco products
An issue was discovered in Barco ClickShare CSM-1 firmware before v1.7.0.3 and CSC-1 firmware before v1.10.0.10.
network
low complexity
barco CWE-79
5.4
2017-01-12 CVE-2016-3150 Cross-site Scripting vulnerability in Barco products
Cross-site scripting (XSS) vulnerability in wallpaper.php in the Base Unit in Barco ClickShare CSC-1 devices with firmware before 01.09.03, CSM-1 devices with firmware before 01.06.02, and CSE-200 devices with firmware before 01.03.02 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
low complexity
barco CWE-79
6.1