Lucene search

K
osvGoogleOSV:CVE-2020-12620
HistoryJul 30, 2020 - 2:15 p.m.

CVE-2020-12620

2020-07-3014:15:12
Google
osv.dev
5
pi-hole
privilege escalation
command injection
software vulnerability

AI Score

7.6

Confidence

High

EPSS

0.001

Percentile

43.2%

Pi-hole 4.4 allows a user able to write to /etc/pihole/dns-servers.conf to escalate privileges through command injection (shell metacharacters after an IP address).

AI Score

7.6

Confidence

High

EPSS

0.001

Percentile

43.2%

Related for OSV:CVE-2020-12620