MiniDVBLinux 5.4 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands as root through the 'command' GET parameter. Attackers can exploit the /tpl/commands.sh endpoint by sending malicious command values to gain root-level system access.
Metrics
Affected Vendors & Products
References
History
Tue, 30 Dec 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | MiniDVBLinux 5.4 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands as root through the 'command' GET parameter. Attackers can exploit the /tpl/commands.sh endpoint by sending malicious command values to gain root-level system access. | |
| Title | MiniDVBLinux 5.4 Remote Root Command Execution via commands.sh | |
| Weaknesses | CWE-537 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2025-12-30T22:41:33.477Z
Reserved: 2025-12-21T19:48:13.435Z
Link: CVE-2022-50691
No data.
Status : Received
Published: 2025-12-30T23:15:43.620
Modified: 2025-12-30T23:15:43.620
Link: CVE-2022-50691
No data.
OpenCVE Enrichment
No data.