Description

ReQuest Serious Play Media Player 3.0 contains an unauthenticated file disclosure vulnerability when input passed through the 'file' parameter in and script is not properly verified before being used to read web log files. Attackers can exploit this to disclose contents of files from local resources.

INFO

Published Date :

2025-12-05T17:17:37.980Z

Last Modified :

2026-04-07T14:04:58.371Z

Source :

VulnCheck
AFFECTED PRODUCTS

The following products are affected by CVE-2020-36878 vulnerability.

Vendors Products
Request
  • Serious Play

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability