ReQuest Serious Play Media Player 3.0 contains an unauthenticated file disclosure vulnerability when input passed through the 'file' parameter in and script is not properly verified before being used to read web log files. Attackers can exploit this to disclose contents of files from local resources.
CVSS
No CVSS.
References
Configurations
No configuration.
History
05 Dec 2025, 18:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-05 18:15
Updated : 2025-12-08 18:26
NVD link : CVE-2020-36878
Mitre link : CVE-2020-36878
CVE.ORG link : CVE-2020-36878
JSON object : View
Products Affected
No product.
CWE
CWE-73
External Control of File Name or Path
