CVE-2020-28334: Barco Wepresent Wipg-1600w Firmware
Critical severity, CVSS 9.8. EPSS: 4.8% chance of exploitation in the next 30 days.
Barco wePresent WiPG-1600W devices use Hard-coded Credentials (issue 2 of 2). Affected Version(s): 2.5.1.8, 2.5.0.25, 2.5.0.24, 2.4.1.19. The Barco wePresent WiPG-1600W device has a hardcoded root password hash included in the firmware image. Exploiting CVE-2020-28329, CVE-2020-28330 and CVE-2020-28331 could potentially be used in a simple and automated exploit chain to go from unauthenticated remote attacker to root shell.
Affected products
- Barco Wepresent Wipg-1600w Firmware: version 2.4.1.19 only; version 2.5.0.24 only; version 2.5.0.25 only; version 2.5.1.8 only
Published 2020-11-24. Last modified 2026-06-17.