CVE-2020-5741

Plex Media Server Remote Code Execution Vulnerability

Plex Media Server contains a remote code execution vulnerability that allows an attacker with access to the server administrator's Plex account to upload a malicious file via the Camera Upload feature and have the media server execute it. Vendor/Product: Plex Media Server. Added to CISA KEV 2023-03-10; required action: Apply updates per vendor instructions.

Category: Vulnerability, Known Exploited