PT-2025-50221 · Emby · Emby Server
Published
2025-12-06
·
Updated
2025-12-11
·
CVE-2025-64113
CVSS v2.0
10
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Emby Server versions prior to 4.9.1.81
Emby Server versions 4.9.1.81 through 4.9.1.90
Emby Server version 4.9.2.7
Description
Emby Server, a user-installable home media server, is affected by an issue allowing an attacker to gain full administrative access to the server. No specific preconditions beyond network access are required for exploitation. Approximately 993.8k servers are estimated to be exposed. The issue affects Emby Server administration, not the underlying operating system.
Recommendations
Update Emby Server to version 4.9.1.81 or later.
Update Emby Server to version 4.9.1.90 or later.
Update Emby Server to version 4.9.2.7 or later.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Emby Server