CVE-2020-36898

CRITICAL

QiHang Media Web Digital Signage 3.0.9 - Path Traversal

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2020-36898. PoCs published by LiquidWorm.

AI-analyzed exploit summary This exploit demonstrates an unauthenticated arbitrary file deletion vulnerability in QiHang Media Web Digital Signage 3.0.9 via a maliciously crafted POST request to 'QH.aspx' with a manipulated 'data' parameter.

Description

QiHang Media Web Digital Signage 3.0.9 contains an unauthenticated file deletion vulnerability in the QH.aspx endpoint that allows remote attackers to delete files without authentication. Attackers can exploit the 'data' parameter by sending a POST request with file paths to delete arbitrary files with web server permissions using directory traversal sequences.

Exploits (1)

exploitdb WORKING POC
by LiquidWorm · textwebappshardware
https://www.exploit-db.com/exploits/48749

This exploit demonstrates an unauthenticated arbitrary file deletion vulnerability in QiHang Media Web Digital Signage 3.0.9 via a maliciously crafted POST request to 'QH.aspx' with a manipulated 'data' parameter.

Classification
Working Poc 90%
Attack Type
Other
Complexity
Trivial
Reliability
Reliable
Target: QiHang Media Web Digital Signage 3.0.9
No auth needed
Prerequisites: Network access to the target server · Target software running and accessible
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (4)

Core 4
Core References
Exploit, Third Party Advisory, VDB Entry exploit
https://www.exploit-db.com/exploits/48749
Product product
http://www.howfor.com
Exploit, Third Party Advisory vendor-advisory vdb-entry
https://www.zeroscience.mk/en/vulnerabilities/ZSL-2020-5580.php

Scores

CVSS v3 9.1
EPSS 0.0152
EPSS Percentile 71.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-22
Status published
Products (1)
howfor/qihang_media_web_digital_signage 3.0.9
Published Dec 10, 2025
Tracked Since Feb 18, 2026