cbcvebase.

Crestron Airmedia vulnerabilities

13 known vulnerabilities affecting crestron/crestron_airmedia.

Total CVEs
13
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH4MEDIUM3

Vulnerabilities

Page 1 of 1
CVE-2019-3932P2CRITICALCVSS 9.8vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3932 [CRITICAL] CWE-249 CVE-2019-3932: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to authenticat Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to authentication bypass due to a hard-coded password in return.tgi. A remote, unauthenticated attacker can use this vulnerability to control external devices via the uart_bridge.
nvd
CVE-2019-3925P2CRITICALCVSS 9.8vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3925 [CRITICAL] CWE-79 CVE-2019-3925: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to command inj Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to command injection via SNMP OID iso.3.6.1.4.1.3212.100.3.2.9.3. A remote, unauthenticated attacker can use this vulnerability to execute operating system commands as root.
nvd
CVE-2019-3926P2CRITICALCVSS 9.8vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3926 [CRITICAL] CWE-79 CVE-2019-3926: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to command inj Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to command injection via SNMP OID iso.3.6.1.4.1.3212.100.3.2.14.1. A remote, unauthenticated attacker can use this vulnerability to execute operating system commands as root.
nvd
CVE-2019-3939P2CRITICALCVSS 9.8vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3939 [CRITICAL] CWE-16 CVE-2019-3939: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 use default credentials admin Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 use default credentials admin/admin and moderator/moderator for the web interface. An unauthenticated, remote attacker can use these credentials to gain privileged access to the device.
nvd
CVE-2019-3927P2CRITICALCVSS 9.8vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3927 [CRITICAL] CWE-284 CVE-2019-3927: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 anyone can change the adminis Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 anyone can change the administrator and moderator passwords via the iso.3.6.1.4.1.3212.100.3.2.8.1 and iso.3.6.1.4.1.3212.100.3.2.8.2 OIDs. A remote, unauthenticated attacker can use this vulnerability to change the admin or moderator user's password and gain access to restricted
nvd
CVE-2019-3935P3CRITICALCVSS 9.1vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3935 [CRITICAL] CWE-284 CVE-2019-3935: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allows anyone to act as a mod Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allows anyone to act as a moderator to a slide show via crafted HTTP POST requests to conference.cgi. A remote, unauthenticated attacker can use this vulnerability to start, stop, and disconnect active slideshows.
nvd
CVE-2019-3931P3HIGHCVSS 8.8vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3931 [HIGH] CWE-88 CVE-2019-3931: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to argumention Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 are vulnerable to argumention injection to the curl binary via crafted HTTP requests to return.cgi. A remote, authenticated attacker can use this vulnerability to upload files to the device and ultimately execute code as root.
nvd
CVE-2019-3936P3HIGHCVSS 7.5vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3936 [HIGH] CWE-284 CVE-2019-3936: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 is vulnerable to denial of se Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 is vulnerable to denial of service via a crafted request to TCP port 389. The request will force the slideshow to transition into a "stopped" state. A remote, unauthenticated attacker can use this vulnerability to stop an active slideshow.
nvd
CVE-2019-3934P3MEDIUMCVSS 5.3vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3934 [MEDIUM] CWE-284 CVE-2019-3934: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allows anyone to bypass the p Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allows anyone to bypass the presentation code sending a crafted HTTP POST request to login.cgi. A remote, unauthenticated attacker can use this vulnerability to download the current slide image without knowing the access code.
nvd
CVE-2019-3938P3HIGHCVSS 7.8vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3938 [HIGH] CWE-522 CVE-2019-3938: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 stores usernames, passwords, Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 stores usernames, passwords, and other configuration options in the file generated via the "export configuration" feature. The configuration file is encrypted using the awenc binary. The same binary can be used to decrypt any configuration file since all the encryption logic is hard c
nvd
CVE-2019-3933P3MEDIUMCVSS 5.3vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3933 [MEDIUM] CWE-284 CVE-2019-3933: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allows anyone to bypass the p Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allows anyone to bypass the presentation code simply by requesting /images/browserslide.jpg via HTTP. A remote, unauthenticated attacker can use this vulnerability to watch a slideshow without knowing the access code.
nvd
CVE-2019-3937P3HIGHCVSS 7.8vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3937 [HIGH] CWE-312 CVE-2019-3937: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 stores usernames, passwords, Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 stores usernames, passwords, slideshow passcode, and other configuration options in cleartext in the file /tmp/scfgdndf. A local attacker can use this vulnerability to recover sensitive data.
nvd
CVE-2019-3928P4MEDIUMCVSS 5.3vAM-100 firmware 1.6.0.2 and AM-101 firmware 2.7.0.22019-04-30
CVE-2019-3928 [MEDIUM] CWE-284 CVE-2019-3928: Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allow any user to obtain the Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allow any user to obtain the presentation passcode via the iso.3.6.1.4.1.3212.100.3.2.7.4 OIDs. A remote, unauthenticated attacker can use this vulnerability to access a restricted presentation or to become the presenter.
nvd
Crestron Airmedia vulnerabilities | cvebase