Vulnerability record · CVE-2019-18826 · published 16 December 2019
CVE-2019-18826: Barco clickshare cs-100 firmware improper certificate validation vulnerability
BBarco · Clickshare Cs 100 Firmware
Barco ClickShare Button R9861500D01 devices before 1.9.0 have Improper Following of a Certificate's Chain of Trust. The embedded 'dongle_bridge' program used to expose the functionalities of the ClickShare Button to a USB host, does not properly validate the whole certificate chain.
Description
Barco ClickShare Button R9861500D01 devices before 1.9.0 have Improper Following of a Certificate's Chain of Trust. The embedded 'dongle_bridge' program used to expose the functionalities of the ClickShare Button to a USB host, does not properly validate the whole certificate chain.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
4 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| https://www.barco.com/en/clickshare/firmware-update | ProductVendor Advisory |
| https://www.barco.com/en/clickshare/firmware-update | ProductVendor Advisory |
Track CVE-2019-18826 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2019-18826), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.