Security Advisory

CVE-2020-12620

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-07-30 13:03:37
Last updated 2024-08-04 12:04:21
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Pi-hole 4.4 allows a user able to write to /etc/pihole/dns-servers.conf to escalate privileges through command injection (shell metacharacters after an IP address).