Minidvblinux

Minidvblinux

7 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 0.37%
  • Veröffentlicht 30.12.2025 22:41:33
  • Zuletzt bearbeitet 12.01.2026 14:16:00

MiniDVBLinux 5.4 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands as root through the 'command' GET parameter. Attackers can exploit the /tpl/commands.sh endpoint by sending malicio...

Medienbericht Exploit
  • EPSS 1.81%
  • Veröffentlicht 09.12.2025 20:56:46
  • Zuletzt bearbeitet 19.12.2025 19:16:19

MiniDVBLinux 5.4 contains a remote code execution vulnerability in the SVDRP protocol that allows remote attackers to send commands to manipulate TV systems. Attackers can send crafted SVDRP commands through the svdrpsend.sh script to execute message...

Exploit
  • EPSS 0.47%
  • Veröffentlicht 09.12.2025 20:55:58
  • Zuletzt bearbeitet 19.12.2025 19:19:53

MiniDVBLinux 5.4 contains an unauthenticated vulnerability in the tv_action.sh script that allows remote attackers to generate live stream snapshots through the Simple VDR Protocol. Attackers can request /tpl/tv_action.sh to create and retrieve a liv...

Exploit
  • EPSS 0.88%
  • Veröffentlicht 09.12.2025 20:55:15
  • Zuletzt bearbeitet 19.12.2025 19:20:23

MiniDVBLinux 5.4 contains an arbitrary file disclosure vulnerability that allows attackers to read sensitive system files through the 'file' GET parameter. Attackers can exploit the about page by supplying file paths to disclose arbitrary file conten...

Exploit
  • EPSS 1.41%
  • Veröffentlicht 09.12.2025 20:54:46
  • Zuletzt bearbeitet 19.12.2025 19:21:12

MiniDVBLinux 5.4 contains an authentication bypass vulnerability that allows remote attackers to change the root password without authentication. Attackers can send crafted POST requests to the system setup endpoint with modified SYSTEM_PASSWORD para...

Exploit
  • EPSS 0.32%
  • Veröffentlicht 09.12.2025 20:53:43
  • Zuletzt bearbeitet 19.12.2025 19:21:47

MiniDVBLinux 5.4 contains an unauthenticated configuration download vulnerability that allows remote attackers to access sensitive system configuration files through a direct object reference. Attackers can exploit the backup download endpoint by sen...

Exploit
  • EPSS 17.69%
  • Veröffentlicht 20.06.2025 18:36:09
  • Zuletzt bearbeitet 22.12.2025 17:46:41

An OS command injection vulnerability exists in MiniDVBLinux version 5.4 and earlier. The system’s web-based management interface fails to properly sanitize user-supplied input before passing it to operating system commands. A remote unauthenticated ...