CVE-2018-5553: Crestron Dge-100 Firmware
Critical severity, CVSS 9.8. EPSS: 2.5% chance of exploitation in the next 30 days.
The Crestron Console service running on DGE-100, DM-DGE-200-C, and TS-1542-C devices with default configuration and running firmware versions 1.3384.00049.001 and lower are vulnerable to command injection that can be used to gain root-level access.
Affected products
- Crestron Dge-100 Firmware: up to and including 1.3384.00049.001
- Crestron Dm-Dge-200-C Firmware: up to and including 1.3384.00049.001
- Crestron Ts-1542-C Firmware: up to and including 1.3384.00049.001
Published 2018-07-10. Last modified 2026-06-17.