Key Injection Vulnerability in Logitech R500 Presentation Clicker
CVE-2019-13054
6.5MEDIUM
What is CVE-2019-13054?
The Logitech R500 presentation clicker has a vulnerability that allows attackers to deduce the AES encryption key, enabling keystroke injections. This can be exploited on Windows systems, where attackers can bypass character restrictions and inject arbitrary text using the ALT+NUMPAD input method. As a result, unauthorized commands may be executed remotely, posing significant security risks.
