CNNVD-202512-617 Information

CNNVD ID

CNNVD-202512-617

CVE-2020-36877

  • CNNVD Published: 2025-12-05

Description (Chinese)

ReQuest Serious Play F3 Media Server是美国ReQuest Serious Play公司的一个数字媒体服务器。 ReQuest Serious Play F3 Media Server 7.0.3版本存在操作系统命令注入漏洞,该漏洞源于未经验证的远程代码执行,可能导致攻击者上传PHP可执行文件并执行任意命令。

Description (English)

ReQuest Serious Play F3 Media Server is a digital media server for ReQuest Serious Play in the United States. Version 7.0.3 of ReQuest Serious Play F3 Media Server contains a loophole in operating system commands, which originates from unverified remote code execution and may lead to the attackers uploading PHP enforceable documents and carrying out arbitrary orders.

Hazard Level

Low

Vulnerability Type

操作系统命令注入

Affected Vendor

ReQuest Serious Play

Published

2025-12-05

Last Modified

2026-02-24

References

http://request.com/ https://www.exploit-db.com/exploits/48952 https://www.vulncheck.com/advisories/request-serious-play-f-media-server-unauthenticated-rce https://www.zeroscience.mk/en/vulnerabilities/ZSL-2020-5602.php https://access.redhat.com/security/cve/cve-2020-36877

Share on: