CNNVD-202601-1029 Information

CNNVD ID

CNNVD-202601-1029

CVE-2020-36913

  • CNNVD Published: 2026-01-06

Description (Chinese)

All-Dynamics enlogic:show是德国All-Dynamics公司的一个数字标牌管理系统。 All-Dynamics enlogic:show 2.0.2版本存在安全漏洞,该漏洞源于存在会话固定漏洞,可能导致绕过身份验证并执行跨站请求伪造攻击。

Description (English)

All-Dynamics environmental: show is a digital sign management system for All-Dynamics in Germany. All-Dynamics enlogic: show 2.0.2 has a security loophole, which stems from a fixed session gap that may lead to the circumvention of identification and the execution of cross-site requests for false attacks.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

All-Dynamics

Published

2026-01-06

Last Modified

2026-02-24

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/186246 https://packetstormsecurity.com/files/158703 https://www.enlogic-show.com/index.dhtml/23695c31af422b939dd049908/-/deDE/-/CS/-/support/changelog https://www.vulncheck.com/advisories/all-dynamics-software-enlogicshow-session-fixation-authentication-bypass https://www.zeroscience.mk/en/vulnerabilities/ZSL-2020-5577.php https://packetstorm.news/files/id/158703

Share on: