Eibiz develops digital signage and media-server products whose vulnerability profile centers on access-control weaknesses: missing authentication for critical functions, authorization bypass through user-controlled keys, and path-traversal flaws that could expose or manipulate media content and server configuration. These issues reflect the authentication and input-validation demands of web-facing media management interfaces; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Eibiz over time
Signals from CVEs in this vendor scope (4 CVEs).
4 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-36893HIGH Eibiz i-Media Server Digital Signage 3.8.0 contains a directory traversal vulnerability that allows unauthenticated remote attackers to access files outside the server's root direc | Dec 10, 2025 | 7.5 | 30 | NO | NO |
CVE-2020-36892CRITICAL Eibiz i-Media Server Digital Signage 3.8.0 contains an unauthenticated privilege escalation vulnerability in the updateUser object that allows attackers to modify user roles. Attac | Dec 10, 2025 | 9.8 | 29 | NO | NO |
CVE-2020-36895HIGH EIBIZ i-Media Server Digital Signage 3.8.0 contains an unauthenticated configuration disclosure vulnerability that allows remote attackers to access sensitive configuration files v | Dec 10, 2025 | 7.5 | 24 | NO | NO |
CVE-2020-36894HIGH Eibiz i-Media Server Digital Signage 3.8.0 contains an authentication bypass vulnerability that allows unauthenticated attackers to create admin users through AMF-encoded object ma | Dec 10, 2025 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (4 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Eibiz.
Media articles that mention a CVE ID that affects a product developed by Eibiz — matched by CVE ID, not by vendor name.