Minidvblinux is a specialized embedded Linux distribution for digital video broadcast and media applications, with a narrow product footprint concentrated in the minidvblinux system itself. Vulnerabilities affecting this vendor skew strongly toward critical-severity outcomes and recur through authentication and access-control weaknesses—including missing authentication for critical functions, OS command injection, path traversal, and hardcoded credentials in configuration files—that are characteristic of embedded media software with limited built-in security hardening. Defenders should treat this vendor's advisories as high-priority for any deployed systems; live severity and current exploitation activity are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Minidvblinux over time
Signals from CVEs in this vendor scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-53771CRITICAL MiniDVBLinux 5.4 contains an authentication bypass vulnerability that allows remote attackers to change the root password without authentication. Attackers can send crafted POST re | Dec 9, 2025 | 9.8 | 32 | NO | NO |
CVE-2025-25038CRITICAL An OS command injection vulnerability exists in MiniDVBLinux version 5.4 and earlier. The system’s web-based management interface fails to properly sanitize user-supplied input bef | Jun 20, 2025 | 9.8 | 32 | NO | NO |
CVE-2022-50691CRITICAL MiniDVBLinux 5.4 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands as root through the 'command' GET parameter. | Dec 30, 2025 | 9.8 | 31 | NO | NO |
CVE-2023-53774CRITICAL MiniDVBLinux 5.4 contains a remote code execution vulnerability in the SVDRP protocol that allows remote attackers to send commands to manipulate TV systems. Attackers can send cra | Dec 9, 2025 | 9.8 | 30 | NO | NO |
CVE-2023-53770HIGH MiniDVBLinux 5.4 contains an unauthenticated configuration download vulnerability that allows remote attackers to access sensitive system configuration files through a direct objec | Dec 9, 2025 | 7.5 | 28 | NO | NO |
CVE-2023-53772HIGH MiniDVBLinux 5.4 contains an arbitrary file disclosure vulnerability that allows attackers to read sensitive system files through the 'file' GET parameter. Attackers can exploit th | Dec 9, 2025 | 7.5 | 25 | NO | NO |
CVE-2023-53773MEDIUM MiniDVBLinux 5.4 contains an unauthenticated vulnerability in the tv_action.sh script that allows remote attackers to generate live stream snapshots through the Simple VDR Protocol | Dec 9, 2025 | 5.3 | 20 | NO | NO |
Signals from CVEs in this vendor scope (7 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Minidvblinux.
Media articles that mention a CVE ID that affects a product developed by Minidvblinux — matched by CVE ID, not by vendor name.