ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-36910”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-36910
Published
2026-01-06
CVSS:
8.7
ShadowTrackr CVSS:
6.3
Summary:
Cayin Signage Media Player 3.0 contains an authenticated remote command injection vulnerability in system.cgi and wizard_system.cgi pages. Attackers can exploit the 'NTP_Server_IP' parameter with default credentials to execute arbitrary shell commands as root.