CISA Known Exploited Vulnerability

CVE-2020-5849

Unraid · Unraid

Unraid Authentication Bypass Vulnerability

Date added
BOD 22-01 due date
CWE CWE-287, CWE-697
Ransomware Unknown

CISA description

Unraid contains an authentication bypass vulnerability that allows attackers to gain access to the administrative interface. This CVE is chainable with CVE-2020-5847 for remote code execution.

Required action

Apply updates per vendor instructions.