US CISA added remote code execution vulnerability in Plex Media Server to its Known Exploited Vulnerabilities Catalog.
U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a remote code execution (RCE) vulnerability in the Plex Media Server, tracked as CVE-2020-5741 (CVSS score: 7.2), to its Known Exploited Vulnerabilities Catalog.
The three-year-old high-severity flaw is a deserialization of untrusted data in Plex Media Server on Windows, a remote, authenticated attacker can trigger it to execute arbitrary Python code.
<img src=\"https://s.w.org/images/core/emoji/14.0.0/72×72/1f5e3.png\" alt=\"
Source: itilibarenluv-detiolpxe-nwonk-gub-revres-aidem-xelp-asic/ytiruces/924341/moc.sriaffaytiruces
© 版权声明
文章版权归作者所有,未经允许请勿转载。
THE END
请登录后发表评论
注册