### [CVE-2019-18832](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-18832) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description Barco ClickShare Button R9861500D01 devices before 1.9.0 have incorrect Credentials Management. The ClickShare Button implements encryption at rest which uses a one-time programmable (OTP) AES encryption key. This key is shared across all ClickShare Buttons of model R9861500D01. ### POC #### Reference - https://labs.f-secure.com/advisories/multiple-vulnerabilities-in-barco-clickshare/ - https://labs.f-secure.com/advisories/multiple-vulnerabilities-in-barco-clickshare/ #### Github No PoCs found on GitHub currently.