AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2020-23036

MEDIUM · CVSS 5.9 EPSS 1.09%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-10-22 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2020-23036
Severity
MEDIUM
CVSS
5.9
EPSS
1.09%

Original NVD Description

MEDIA NAVI Inc SMACom v1.2 was discovered to contain an insecure session validation vulnerability in the session handling of the `password` authentication parameter of the wifi photo transfer module. This vulnerability allows attackers with network access privileges or on public wifi networks to read the authentication credentials and follow-up requests containing the user password via a man in the middle attack.