EXPOSURES › CVE-2020-5849
CVE-2020-5849
HIGH ⌖ ON CISA KEV · EXPLOITEDUnraid's authentication bypass vulnerability allowed attackers to access the administrative interface, which can be chained with another CVE for remote code execution.
Unraid's authentication bypass vulnerability (CVE-2020-5849) allowed attackers to gain access to the administrative interface, and when chained with CVE-2020-5847, it enabled remote code execution. DIB organizations should care because this exposes administrative functions and can lead to full system compromise, impacting compliance with security requirements. Organizations should ensure all software is patched and monitor for chainable vulnerabilities.
Shame score — The vulnerability was actively exploited (KEV) and chainable with another CVE for remote code execution, indicating a significant security failure in authentication and input validation.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Unraid contains an authentication bypass vulnerability that allows attackers to gain access to the administrative interface. This CVE is chainable with CVE-2020-5847 for remote code execution.
"Unraid contains an authentication bypass vulnerability that allows attackers to gain access to the administrative interface. This CVE is chainable with CVE-2020-5847 for remote code execution."
"CISA Known Exploited Vulnerabilities (KEV) catalog is the authoritative list of security flaws that have been confirmed exploited in real-world attacks."
"Because each KEV entry carries direct evidence of active exploitation, the catalog is one of the highest-signal inputs for risk-based patch mana"
"CISA Known Exploited Vulnerabilities (KEV) is an initiative that identifies and publishes a list of known exploited vulnerabilities."