Security Flaw in Barco ClickShare Button - R9861500D01
CVE-2019-18832
8.1HIGH
What is CVE-2019-18832?
The Barco ClickShare Button R9861500D01 devices, specifically those operating on versions prior to 1.9.0, exhibit a serious flaw in their credentials management. The implementation of encryption at rest relies on a one-time programmable (OTP) AES encryption key that is shared across all devices of the same model. This design exposes a potential risk, as the exposure of this key could lead to unauthorized access and manipulation of sensitive data across multiple devices.