Required CVE Record Information
Description
Pi-hole 4.4 allows a user able to write to /etc/pihole/dns-servers.conf to escalate privileges through command injection (shell metacharacters after an IP address).
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- https://github.com/pi-hole/pi-hole x_transferred
- https://pi-hole.net/ x_transferred
- https://0xpanic.github.io/2020/07/21/Pihole.html x_transferred