Remote Access Vulnerability in Crestron AM-100 and AM-101 Products
CVE-2019-3935
9.1CRITICAL
What is CVE-2019-3935?
The Crestron AM-100 and AM-101 devices are susceptible to a vulnerability that allows an unauthenticated attacker to manipulate slideshow sessions through specially crafted HTTP POST requests. This grants unauthorized individuals the ability to start, stop, and disconnect active presentations in conference settings, potentially disrupting critical meetings and presentations.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Crestron AirMedia AM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.2
References
CVSS V3.1
Score:
9.1
Severity:
CRITICAL
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
