CVE-2020-36923: Sony BRAVIA Digital Signage 1.7.8 Client-Side Protection Bypass via IDOR
Sony BRAVIA Digital Signage 1.7.8 contains an insecure direct object reference vulnerability that allows attackers to bypass authorization controls. Attackers can access hidden system resources like '/#/content-creation' by manipulating client-side access restrictions.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-36923?
CVE-2020-36923 is classified as a high-severity vulnerability due to its potential to allow unauthorized access to sensitive resources.
What is CVE-2020-36923?
CVE-2020-36923 is an insecure direct object reference vulnerability in Sony BRAVIA Digital Signage that enables attackers to bypass authorization controls.
Who is affected by CVE-2020-36923?
CVE-2020-36923 affects users of Sony BRAVIA Digital Signage version 1.7.8.
How do I fix CVE-2020-36923?
To fix CVE-2020-36923, ensure that you update Sony BRAVIA Digital Signage to the latest version that addresses this vulnerability.
What can attackers do with CVE-2020-36923?
Attackers can exploit CVE-2020-36923 to access hidden system resources by manipulating client-side access restrictions.