« Back to list

Ids6

Ids6 Dsspro Digital Signage System: vulnerabilities and CVEs

Ids6 Dsspro Digital Signage System has 4 published vulnerabilities, 4 of them in the last 12 months. 1 are rated critical and 0 are listed by CISA as actively exploited.

CVEs4
Last 12 months4
Critical1
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2020-37228Critical (9.3)0.43%—May 16, 2026
iDS6 DSSPro Digital Signage System 6.2 contains a CAPTCHA security bypass vulnerability that allows attackers to bypass authentication by requesting the autoLoginVerifyCode object. Attackers can retrieve valid CAPTCHA…
CVE-2020-36920High (8.7)0.37%—Jan 6, 2026
iDS6 DSSPro Digital Signage System 6.2 contains an improper access control vulnerability that allows authenticated users to elevate privileges through console JavaScript functions. Attackers can create users, modify…
CVE-2020-36918Medium (5.1)0.17%—Jan 6, 2026
iDS6 DSSPro Digital Signage System 6.2 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without request validation. Attackers can craft malicious web pages to…
CVE-2020-36917High (8.6)0.31%—Jan 6, 2026
iDS6 DSSPro Digital Signage System 6.2 contains a sensitive information disclosure vulnerability that allows remote attackers to intercept authentication credentials through cleartext cookie transmission. Attackers can…

🎯 How it gets exploited (ATT&CK techniques)

  1. T1078 Valid Accounts1
  2. T1078.001 Default Accounts1
  3. T1190 Exploit Public-Facing Application1
  4. T1210 Exploitation of Remote Services1
  5. T1212 Exploitation for Credential Access1
  6. T1557 Adversary-in-the-Middle1

Number of CVEs of this technology mapped to each exploitation or primary-impact technique.