Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In the plex.tv backend for Plex Media Server (PMS) through 2025-12-31, a non-server device token can retrieve share tokens (intended for unrelated access) via a shared_servers endpoint.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:N/A:N
Vulnerability Type
授权机制不正确
Vulnerability Title
Plex Media Server 安全漏洞
Vulnerability Description
Plex Media Server是瑞士Plex公司的一套媒体播放器及媒体服务器软件。 Plex Media Server 2025-12-31及之前版本存在安全漏洞,该漏洞源于plex.tv后端中非服务器设备令牌可通过shared_servers端点检索共享令牌,可能导致共享令牌泄露。
CVSS Information
N/A
Vulnerability Type
N/A