Comment on Improve very slow library scans on Jellyfin 10.11 / 12 on spinning media
Blue_Morpho@lemmy.world 8 hours agoI quoted Plex documentation where it explains in detail that you need port 32400 OPEN for remote access. support.plex.tv/…/200289506-remote-access/
I linked the CVE but here is the plain language version because you didn’t read what I linked:
howtogeek.com/over-300k-plex-servers-are-still-vu…
"The flaw has been assigned a CVSS score of 10.0, the highest possible level of severity. This score indicates that the vulnerability can be exploited remotely over the internet, is easy to execute, and requires no authentication or interaction from the server’s owner. A successful attack could result in a total loss of confidentiality, integrity, and availability. An attacker could access, modify, or delete a user’s private media files, or even disable the entire Plex server. "
What the fuck is wrong with you?
GoatSynagogue@lemmy.world 5 hours ago
You clearly don’t understand how Plex and port forwarding work if you think that is in any way the same as opening a port to the Internet for everyone to hit jellyfin with zero security on it.
The CVE has been exploited zero times that we know of, and at worst they can delete your media files and Plex server. It’s never been reported of happening, and we have no idea how difficult it is to do - but because it hasn’t happened, it’s probably extremely hard and requires a chain of very unlikely things to have happened first.