First published: Wed Apr 22 2020(Updated: )
Improper Input Validation in Plex Media Server on Windows allows a local, unauthenticated attacker to execute arbitrary Python code with SYSTEM privileges.
Credit: vulnreport@tenable.com
Affected Software | Affected Version | How to fix |
---|---|---|
Plex | <1.19.1.2701 | |
Microsoft Windows Operating System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2020-5740.
The severity of CVE-2020-5740 is high (CVSS score: 7.8).
The affected software for CVE-2020-5740 is Plex Media Server on Windows (up to version 1.19.1.2701).
An attacker can execute arbitrary Python code with SYSTEM privileges.
No, Microsoft Windows is not vulnerable to CVE-2020-5740.