Skip to content
IoT

CVE-2020-36910

8.7
High
EPSS 1%Jan 7, 2026

Authenticated remote command execution on Cayin Signage Player via NTP_Server_IP.

common questions

Is CVE-2020-36910 being exploited?

Not confirmed. CVE-2020-36910 does not appear in CISA's Known Exploited Vulnerabilities catalog, which records only exploitation that has been observed and reported publicly. That is evidence of absence of a report, not evidence the flaw is unattacked. EPSS currently estimates a 1.5% probability of exploitation in the next 30 days.

How severe is CVE-2020-36910?

CVE-2020-36910 is rated High with a CVSS score of 8.7. Severity describes how bad exploitation would be, not how likely it is: pair it with exploitation evidence before deciding what to patch first.

Is there a patch for CVE-2020-36910?

Not known from our data. No patch reference has been recorded for CVE-2020-36910, which is not the same as no patch existing — a fix may have shipped without a tagged reference, or after this record was written. The vendor advisory is the only authority on whether a fix exists, and mitigations may be available regardless.

What does CVE-2020-36910 affect?

CVE-2020-36910 affects Cayin Signage Media Player 3.0 (system.cgi, wizard_system.cgi). Confirm the exact affected versions against the vendor advisory before deciding you are exposed.

What should I do about CVE-2020-36910?

Apply firmware update; restrict network exposure to signage devices.

Exploitation status reflects CISA's KEV catalog as we last synced it. Check the catalog directly.

executive summary
technical analysis
affected
Cayin Signage Media Player 3.0 (system.cgi, wizard_system.cgi)
impact

Remote root command execution via NTP_Server_IP parameter; default creds allow shell access as root.

action required

Patch when possible

affected versions
CAYIN Technology SMP-1000
  • affected1.0 Build 14099
CAYIN Technology SMP-200
  • affected1.0 Build 13080
  • affected1.0 Build 12331
CAYIN Technology SMP-2000
  • affected1.0 Build 14167
  • affected1.0 Build 14087
CAYIN Technology SMP-2100
  • affected10.0 Build 16228
  • affected3.0
CAYIN Technology SMP-2200
  • affected3.0 Build 19029
  • affected3.0 Build 19025
CAYIN Technology SMP-2210
  • affected3.0 Build 19025
CAYIN Technology SMP-2300
  • affected3.0 Build 19316
CAYIN Technology SMP-2310
  • affected3.0
CAYIN Technology SMP-300
  • affected1.0 Build 14177
CAYIN Technology SMP-4000
  • affected1.0 Build 14098
  • affected1.0 Build 14092
  • affected1.0 Build 14087
CAYIN Technology SMP-6000
  • affected3.0 Build 19025
  • affected1.0 Build 14246
  • affected1.0 Build 14199
  • affected1.0 Build 14167
  • affected1.0 Build 14097
  • affected1.0 Build 14090
  • affected1.0 Build 14069
  • affected1.0 Build 14062
CAYIN Technology SMP-8000
  • affected3.0
CAYIN Technology SMP-8000QD
  • affected3.0
CAYIN Technology SMP-NEO
  • affected1.0
CAYIN Technology SMP-NEO2
  • affected1.0
CAYIN Technology SMP-PRO4
  • affected1.0
CAYIN Technology SMP-PROPLUS
  • affected1.5 Build 10081
CAYIN Technology SMP-WEB4
  • affected2.0 Build 13073
  • affected2.0 Build 11175
  • affected1.5 Build 11476
  • affected1.5 Build 11126
  • affected1.0 Build 10301
CAYIN Technology SMP-WEBPLUS
  • affected6.5 Build 11126

As published in the CVE Program record. A version outside these ranges is not a statement that it is unaffected — vendors sometimes understate a range, and distribution-backported builds carry upstream numbers that do not reflect what was patched into them.

how to fix
Remediation steps are tailored for users whose stack is affected. Add this technology to your stack to see the fix checklist.
references
get alerted

Track only the vulnerabilities that affect your infrastructure.

start for free