Vulnerability Description
TDM Digital Signage PC Player 4.1.0.4 contains an elevation of privileges vulnerability that allows authenticated users to modify executable files. Attackers can leverage the 'Modify' permissions for authenticated users to replace executable files with malicious binaries and gain elevated system access.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://exchange.xforce.ibmcloud.com/vulnerabilities/190627
- https://packetstorm.news/files/id/159723
- https://pro.sony/en_NL/products/display-software/tdm-ds1y-tdm-ds3y
- https://www.exploit-db.com/exploits/48953
- https://www.tdmsignage.com
- https://www.vulncheck.com/advisories/tdm-digital-signage-pc-player-privilege-esc
- https://www.zeroscience.mk/en/vulnerabilities/ZSL-2020-5604.php
- https://www.exploit-db.com/exploits/48953
FAQ
What is CVE-2020-36916?
CVE-2020-36916 is a vulnerability with a CVSS score of 8.8 (HIGH). TDM Digital Signage PC Player 4.1.0.4 contains an elevation of privileges vulnerability that allows authenticated users to modify executable files. Attackers can leverage the 'Modify' permissions for ...
How severe is CVE-2020-36916?
CVE-2020-36916 has been rated HIGH with a CVSS base score of 8.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-36916?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.