ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-36918”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-36918
Published
2026-01-06
CVSS:
5.1
ShadowTrackr CVSS:
1.2
Summary:
iDS6 DSSPro Digital Signage System 6.2 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without request validation. Attackers can craft malicious web pages to trick logged-in administrators into adding unauthorized users by exploiting the lack of CSRF protections.