Extron develops a focused line of audiovisual presentation and collaboration appliances such as the ShareLink wireless presentation system and SME conferencing endpoints, which typically operate within controlled enterprise environments. Vulnerabilities affecting the vendor cluster around web-interface and command-execution boundaries, with recurring weaknesses in code injection, cross-site scripting, OS command injection, and buffer-overflow conditions that reflect the embedded-device and web-control-plane attack surface. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Extron over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-3929CRITICAL The Crestron AM-100 firmware 1.6.0.2, Crestron AM-101 firmware 2.7.0.1, Barco wePresent WiPG-1000P firmware 2.3.0.10, Barco wePresent WiPG-1600W before firmware 2.4.1.19, Extron Sh | Apr 30, 2019 | 9.8 | 99 | YES | YES |
CVE-2019-3930CRITICAL The Crestron AM-100 firmware 1.6.0.2, Crestron AM-101 firmware 2.7.0.1, Barco wePresent WiPG-1000P firmware 2.3.0.10, Barco wePresent WiPG-1600W before firmware 2.4.1.19, Extron Sh | Apr 30, 2019 | 9.8 | 32 | NO | NO |
CVE-2024-50960HIGH A command injection vulnerability in the Nmap diagnostic tool in the admin web console of Extron SMP 111 <=3.01, SMP 351 <=2.16, SMP 352 <= 2.16, and SME 211 <= 3.02, allows a remo | Apr 15, 2025 | 7.2 | 21 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Extron.
Media articles that mention a CVE ID that affects a product developed by Extron — matched by CVE ID, not by vendor name.