Skip to main content
high CISA KEV

CVE-2020-5741

Plex Media Server Remote Code Execution Vulnerability

Description

Plex Media Server contains a remote code execution vulnerability that allows an attacker with access to the server administrator's Plex account to upload a malicious file via the Camera Upload feature and have the media server execute it.

Required action

Apply updates per vendor instructions.

Federal remediation due Mar 31, 2023 — past due

Advertisement

Coverage

No article in the archive references CVE-2020-5741 yet. The record below is from CISA's catalog.