vulnerability

Sumavision Enhanced Multimedia Router: CVE-2020-10181: Cross-Site Request Forgery (CSRF)

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Mar 11, 2020
Added
Aug 21, 2025
Modified
Aug 21, 2025

Description

goform/formEMR30 in Sumavision Enhanced Multimedia Router (EMR) 3.0.4.27 allows creation of arbitrary users with elevated privileges (administrator) on a device, as demonstrated by a setString=new_user<*1*>administrator<*1*>123456 request.

Solution

sumavision-enhanced-multimedia-router-upgrade-latest
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.