CVE-2020-36915
Gravedad CVSS v4.0:
ALTA
Tipo:
CWE-798
Credenciales embebidas en el software
Fecha de publicación:
06/01/2026
Última modificación:
08/01/2026
Descripción
*** Pendiente de traducción *** Adtec Digital SignEdje Digital Signage Player v2.08.28 contains multiple hardcoded default credentials that allow unauthenticated remote access to web, telnet, and SSH interfaces. Attackers can exploit these credentials to gain root-level access and execute system commands across multiple Adtec Digital product versions.
Impacto
Puntuación base 4.0
8.70
Gravedad 4.0
ALTA
Puntuación base 3.x
7.50
Gravedad 3.x
ALTA
Referencias a soluciones, herramientas e información
- https://exchange.xforce.ibmcloud.com/vulnerabilities/190628
- https://packetstorm.news/files/id/159709
- https://www.adtecdigital.com
- https://www.exploit-db.com/exploits/48954
- https://www.vulncheck.com/advisories/adtec-digital-signedje-digital-signage-player-default-credentials
- https://www.zeroscience.mk/en/vulnerabilities/ZSL-2020-5603.php
- https://www.exploit-db.com/exploits/48954



