CNNVD-202601-1024 Information

CNNVD ID

CNNVD-202601-1024

CVE-2020-36917

  • CNNVD Published: 2026-01-06

Description (Chinese)

Phoenix Contact iDS6 DSSPro是美国iDS6公司的一款数字标牌管理系统。 Phoenix Contact iDS6 DSSPro 6.2版本存在安全漏洞,该漏洞源于存在敏感信息泄露漏洞,可能导致通过中间人攻击拦截明文传输的密码。

Description (English)

Phoenix Contact iDS6 DSSPro is a digital tag management system for iDS6 in the United States. There is a security loophole in version 6.2 of Phoenix Contact iDS6 DSSPro, which stems from the existence of sensitive information leaks that could lead to an attack through an intermediary to intercept the password of the express transmission.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

iDS6

Published

2026-01-06

Last Modified

2026-02-24

References

https://cxsecurity.com/issue/WLB-2020110023 https://exchange.xforce.ibmcloud.com/vulnerabilities/191261 https://packetstormsecurity.com/files/159915 http://www.yerootech.com/ https://web.archive.org/web/20200919100215/ https://www.vulncheck.com/advisories/ids-dsspro-digital-signage-system-cleartext-password-disclosure-via-cookie https://www.zeroscience.mk/en/vulnerabilities/ZSL-2020-5605.php

Share on: