High severity7.2CISA KEVNVD Advisory· Published May 8, 2020· Updated Jun 17, 2026
CVE-2020-5741
CVE-2020-5741
Description
Deserialization of Untrusted Data in Plex Media Server on Windows allows a remote, authenticated attacker to execute arbitrary Python code.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:plex:media_server:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:plex:media_server:*:*:*:*:*:*:*:*range: <1.19.3
- (no CPE)
- Plex/Plex Media Serverdescription
Patches
Vulnerability mechanics
References
3- packetstormsecurity.com/files/158470/Plex-Unpickle-Dict-Windows-Remote-Code-Execution.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.tenable.com/security/research/tra-2020-32nvdExploitThird Party Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalognvdUS Government Resource
News mentions
0No linked articles in our index yet.