
4/10 Pi-hole v3.1.4 is exposed. CVE-2020-8816 and EDB-48442 both offer authenticated RCE. But authenticated is the keyword. Default Pi-hole web creds (pi/raspberry) don’t work on the panel because we’re already in as a guest. The real surface is port 22.
Post summary
The post highlights that Pi‑hole v3.1.4 is vulnerable to CVE-2020-8816 and EDB-48442, providing authenticated RCE via port 22, but offers no patch, PoC, or exploitation details.
