CVE-2020-28329: Barco Wepresent Wipg-1600w Firmware

Critical severity, CVSS 9.8. EPSS: 1.6% chance of exploitation in the next 30 days.

Barco wePresent WiPG-1600W firmware includes a hardcoded API account and password that is discoverable by inspecting the firmware image. A malicious actor could use this password to access authenticated, administrative functions in the API. Affected Version(s): 2.5.1.8, 2.5.0.25, 2.5.0.24, 2.4.1.19.

Affected products

  • Barco Wepresent Wipg-1600w Firmware: version 2.4.1.19 only; version 2.5.0.24 only; version 2.5.0.25 only; version 2.5.1.8 only

Published 2020-11-24. Last modified 2026-06-17.