S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2022-26233 Scanner

CVE-2022-26233 scanner - Directory Traversal vulnerability in Barco Control Room Management

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.7k
Times Used
continuous scan runs
4.7k
Continuously Checked
assets under CS
1
Vulnerabilities Found
confirmed findings
References
CVECVE-2022-26233
7.5
CVSS

Barco Control Room Management through Suite 2.9 Build 0275 was discovered to be vulnerable to directory traversal, allowing attackers to access sensitive information and components. Requests must begin with the "GET /..\.." substring.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

Barco Control Room Management is an innovative software designed for mission-critical control room applications. This cutting-edge platform allows users to manage video walls, endpoints, and equipment from a single computer. The software provides a streamlined and efficient solution to visualizing data in industries such as aviation, energy, and public safety. With its intuitive interface and advanced features, Barco Control Room Management is a top choice for organizations in need of high-performance control rooms.

However, recently a critical security flaw has been detected in the software – CVE-2022-26233. This vulnerability stems from a directory traversal flaw that allows attackers to bypass file access controls and gain unauthorized access to sensitive system components. The vulnerability can be easily triggered by sending HTTP requests with the "GET /..\.." substring, which fools the server into providing sensitive data to an attacker. 

If exploited, this vulnerability can lead to severe consequences for the victim organization. Attackers could potentially compromise the integrity of the control room operations, steal sensitive data, and even install malware that could have a devastating impact on the system's overall functionality. These risks underline the importance of fixing the vulnerability as quickly as possible.

Thanks to the pro features of the s4e.io platform, readers can quickly and easily learn about vulnerabilities in their digital assets. This platform provides comprehensive solutions for identifying, detecting, and managing vulnerabilities in your digital assets. With its powerful features and intuitive interface, s4e.io is your go-to solution for protecting against threats and keeping your system secure. Stay ahead of the curve and take your security to the next level with s4e.io!

 

REFERENCES

Solution Advice

To protect against this vulnerability, it is recommended that you follow these precautions:

  • Ensure that you update your Barco Control Room Management software to the latest version that is free from the vulnerability.
  • Apply web application firewall rules to monitor and block malicious requests.
  • Use intrusion detection and prevention systems to detect and alert you to any suspicious activity related to the vulnerability.
  • Check the logs regularly to ensure the security of your system.
  • Restrict access to sensitive files and components to authorized personnel only.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.