Description
The Crestron AM-100 firmware 1.6.0.2, Crestron AM-101 firmware 2.7.0.1, Barco wePresent WiPG-1000P firmware 2.3.0.10, Barco wePresent WiPG-1600W before firmware 2.4.1.19, Extron ShareLink 200/250 firmware 2.0.3.4, Teq AV IT WIPS710 firmware 1.1.0.7, SHARP PN-L703WA firmware 1.4.2.3, Optoma WPS-Pro firmware 1.0.0.5, Blackbox HD WPS firmware 1.0.0.5, InFocus LiteShow3 firmware 1.0.16, and InFocus LiteShow4 2.0.0.7 are vulnerable to a stack buffer overflow in libAwgCgi.so's PARSERtoCHAR function. A remote, unauthenticated attacker can use this vulnerability to execute arbitrary code as root via a crafted request to the return.cgi endpoint.
Published: 2019-04-30
Score: 9.8 Critical
EPSS: 9.1% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

No history.

Subscriptions

Barco Wepresent Wipg-1000p Wepresent Wipg-1000p Firmware Wepresent Wipg-1600w Wepresent Wipg-1600w Firmware
Blackbox Hd Wireless Presentation System Hd Wireless Presentation System Firmware
Crestron Am-100 Am-100 Firmware Am-101 Am-101 Firmware
Extron Sharelink 200 Sharelink 200 Firmware Sharelink 250 Sharelink 250 Firmware
Infocus Liteshow3 Liteshow3 Firmware Liteshow4 Liteshow4 Firmware
Optoma Wps-pro Wps-pro Firmware
Sharp Pn-l703wa Pn-l703wa Firmware
Teqavit Wips710 Wips710 Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: tenable

Published:

Updated: 2024-08-04T19:26:27.743Z

Reserved: 2019-01-03T00:00:00.000Z

Link: CVE-2019-3930

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-04-30T21:29:00.777

Modified: 2024-11-21T04:42:53.220

Link: CVE-2019-3930

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses