GHSL-2021-051: Unauthenticated file read in Emby Server - CVE-2021-32833
Published Aug 12, 2021
·Updated
Emby Server allows unauthenticated file read.
Affected Software
1 affected component
Emby Emby Server
Event History
Aug 12, 2021
Advisory Published
via GitHub Security Lab·12:00 AM
Data Sourced
via GitHub Security Lab·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of GHSL-2021-051?
GHSL-2021-051 has a risk score of 62, indicating a high vulnerability severity.
2
How do I fix GHSL-2021-051?
To fix GHSL-2021-051, it is recommended to update Emby Server to the latest version that addresses this vulnerability.
3
What systems are affected by GHSL-2021-051?
GHSL-2021-051 affects Emby Server installations that have not restricted file read access to authenticated users.
4
What type of attack can GHSL-2021-051 facilitate?
GHSL-2021-051 can facilitate unauthorized access to sensitive files on the server, leading to potential data exposure.
5
Is there a workaround for GHSL-2021-051?
A potential workaround for GHSL-2021-051 is to implement file access restrictions based on user authentication.