CVE-2025-25038
20.06.2025, 19:15
An OS command injection vulnerability exists in MiniDVBLinux version 5.4 and earlier. The systems web-based management interface fails to properly sanitize user-supplied input before passing it to operating system commands. A remote unauthenticated attacker can exploit this vulnerability to execute arbitrary commands as the root user, potentially compromising the entire device.Enginsight
Awaiting analysis
This vulnerability is currently awaiting analysis.
Common Weakness Enumeration
References