Comment on Improve very slow library scans on Jellyfin 10.11 / 12 on spinning media
Blue_Morpho@lemmy.world 22 hours agoWhich Plex does by default. He doesn’t understand that running Plex at home doesn’t open itself up to the Internet. I specifically referenced a CVE that let hackers into your home if you ran Plex.
His claim that securing Jellyfin with an encrypted tunnel does nothing is false.
GoatSynagogue@lemmy.world 11 hours ago
He never claimed that in the comment you replied to.
Plex doesn’t open a port to the internet at large, unsecured no less, like jellyfin does.
Blue_Morpho@lemmy.world 9 hours ago
You obviously don’t use Plex to claim it doesn’t need an open port for remote access:
…plex.tv/…/201543147-what-network-ports-do-i-need…
I already posted a CVE that allowed hackers access to a Plex server running at home.
GoatSynagogue@lemmy.world 9 hours ago
OK so you don’t understand networking, don’t understand how Plex works, don’t understand how that CVE does nothing of the sort, and have poor reading comprehension skills.
I’d hate to be your poor server.
Blue_Morpho@lemmy.world 7 hours ago
I quoted Plex documentation where it explains in detail that you need port 32400 OPEN for remote access. support.plex.tv/…/200289506-remote-access/
I linked the CVE but here is the plain language version because you didn’t read what I linked:
howtogeek.com/over-300k-plex-servers-are-still-vu…
"The flaw has been assigned a CVSS score of 10.0, the highest possible level of severity. This score indicates that the vulnerability can be exploited remotely over the internet, is easy to execute, and requires no authentication or interaction from the server’s owner. A successful attack could result in a total loss of confidentiality, integrity, and availability. An attacker could access, modify, or delete a user’s private media files, or even disable the entire Plex server. "
What the fuck is wrong with you?