Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allow any user to obtain the presentation passcode via the iso.3.6.1.4.1.3212.100.3.2.7.4 OIDs. A remote, unauthenticated attacker can use this vulnerability to access a restricted presentation or to become the presenter.
Advisories
Source ID Title
EUVD EUVD EUVD-2019-13535 Crestron AM-100 with firmware 1.6.0.2 and AM-101 with firmware 2.7.0.2 allow any user to obtain the presentation passcode via the iso.3.6.1.4.1.3212.100.3.2.7.4 OIDs. A remote, unauthenticated attacker can use this vulnerability to access a restricted presentation or to become the presenter.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: tenable

Published:

Updated: 2024-08-04T19:26:27.641Z

Reserved: 2019-01-03T00:00:00

Link: CVE-2019-3928

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-04-30T21:29:00.667

Modified: 2024-11-21T04:42:52.943

Link: CVE-2019-3928

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses