PT-2020-18663 · Plex · Plex Media Server
Chris Lyne
·
Published
2020-06-15
·
Updated
2021-07-21
·
CVE-2020-5742
CVSS v3.1
8.8
High
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Plex Media Server versions prior to June 15, 2020
Description
The issue is related to improper access control, allowing any origin to execute cross-origin application requests.
Recommendations
For versions prior to June 15, 2020, update to a version released after June 15, 2020 to resolve the issue.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Plex Media Server