ShadowTrackr

Search the CVE vulnerability database

Look up vulnerabilities by software, product or CVE number.

1 result for “CVE-2020-23036”

CVEPublishedCVSSShadowTrackr CVSSSummary
CVE:
CVE-2020-23036
Published
2021-10-22
CVSS:
5.9
ShadowTrackr CVSS:
6.9
Summary:
MEDIA NAVI Inc SMACom v1.2 was discovered to contain an insecure session validation vulnerability in the session handling of the `password` authentication parameter of the wifi photo transfer module. This vulnerability allows attackers with network access privileges or on public wifi networks to read the authentication credentials and follow-up requests containing the user password via a man in the middle attack.