CVE-2020-5847Active Exploitation(unraid / unraid)

LOWCVSS 9.8 · CRITICALCISA KEV

Exploitation ongoing with high activity in latest observed window (1 mentions)

Immediate actions

  • Prioritize remediation for unraid unraid systems immediately
  • Assume compromise if assets are exposed
  • Track advisory updates for patch or workaround availability

Recommended action window: Immediate (within 24h)

NVD description

Unraid through 6.8.0 allows Remote Code Execution.

3.5/ 10 priority

Sources & remediation

Listed in the CISA Known Exploited Vulnerabilities catalog. Federal remediation due date: 2022-05-03. Apply updates per vendor instructions.

Priority

LOW

Exploitation

ACTIVE

PoC

YES

Patch

NONE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • unraid

Threat summary

  • Active exploitation appears in 1 classified signals
  • 1 mentions across 1 observed day

What's happening

  • Active exploitation reported across 1 signal
  • Technical details provided in 1 signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
unraid

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-15: 1Active Exploitation · 2026-02-15: 1Technical Details · 2026-02-15: 102-15
Signal classification1 categories
Active Exploitation
1100.0%
Full discourse1 post
  • BlackBoxBrief@BlackBoxBrief
    Active Exploitation

    CISA just added CVE-2020-5849 to KEV — a 2020 Unraid auth bypass still being exploited in the wild. Chains with CVE-2020-5847 for full RCE. Five-year-old vulns in NAS boxes are low-hanging fruit for ransomware crews targeting backup infrastructure.

    Post summary

    CISA has added CVE-2020-5849 to the KEV list, noting it remains actively exploited in the wild. The Unraid auth bypass can chain with CVE-2020-5847 to achieve full RCE, making it a low-hanging fruit for ransomware crews targeting NAS backups.

    0001058
    37 followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
OSunraidunraid---

Explore more