CVE Vulnerabilities

CVE-2022-50691

Java Runtime Error Message Containing Sensitive Information

Published: Dec 30, 2025 | Modified: Jan 09, 2026
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

MiniDVBLinux 5.4 contains a remote command execution vulnerability that allows unauthenticated attackers to execute arbitrary commands as root through the command GET parameter. Attackers can exploit the /tpl/commands.sh endpoint by sending malicious command values to gain root-level system access.

Weakness

In many cases, an attacker can leverage the conditions that cause unhandled exception errors in order to gain unauthorized access to the system.

Affected Software

Name Vendor Start Version End Version
Minidvblinux Minidvblinux 5.4 (including) 5.4 (including)

Potential Mitigations

References