Lucene search

K
cvelistMitreCVELIST:CVE-2020-12620
HistoryJul 30, 2020 - 1:03 p.m.

CVE-2020-12620

2020-07-3013:03:37
mitre
www.cve.org
2
pi-hole 4.4
privilege escalation
command injection
dns servers

AI Score

8.4

Confidence

High

EPSS

0.001

Percentile

43.2%

Pi-hole 4.4 allows a user able to write to /etc/pihole/dns-servers.conf to escalate privileges through command injection (shell metacharacters after an IP address).

AI Score

8.4

Confidence

High

EPSS

0.001

Percentile

43.2%

Related for CVELIST:CVE-2020-12620