Skip to main content

Vendor archive

barco CVEs

Beta · best-effort

40 CVEs tagged to vendor barco11 Critical, 14 High, 15 Medium, 0 Low, 0 Unrated.

CVE-2022-26978

Published Jun 2, 2022

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a URL /checklogin.jsp endpoint. The os_username parameters is not correc…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-26977

Published Jun 2, 2022

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license file upload mechanism. Lack of input sanitization of the uploa…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-26976

Published Jun 2, 2022

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license file upload mechanism. Lack of input sanitization in the uploa…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-26974

Published Jun 2, 2022

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a file upload mechanism. Lack of input sanitization in the upload mechan…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-26973

Published Jun 2, 2022

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license file upload mechanism. By tweaking the license file name, the…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-26972

Published Jun 2, 2022

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a URL /cgi-bin endpoint. The URL parameters are not correctly sanitized,…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-26971

Published Jun 2, 2022

Barco Control Room Management Suite web application, which is part of TransForm N before 3.14, is exposing a license file upload mechanism. This upload can be executed without aut…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-26233

Published Apr 3, 2022

Barco Control Room Management through Suite 2.9 Build 0275 was discovered to be vulnerable to directory traversal, allowing attackers to access sensitive information and component…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2021-38142

Published Sep 7, 2021

Barco MirrorOp Windows Sender before 2.5.3.65 uses cleartext HTTP and thus allows rogue software upgrades. An attacker on the local network can achieve remote code execution on an…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2021-35482

Published Jul 21, 2021

An issue was discovered in Barco MirrorOp Windows Sender before 2.5.4.70. An attacker in the local network is able to achieve Remote Code Execution (with user privileges of the lo…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 40 CVEsPage 1 of 2