CVE-2023-53770 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

MiniDVBLinux 5.4 contains an unauthenticated configuration download vulnerability that allows remote attackers to access sensitive system configuration files th…
High CVSS: 8.7

CVE-2023-53770

MiniDVBLinux 5.4 contains an unauthenticated configuration download vulnerability that allows remote attackers to access sensitive system configuration files through a direct object reference. Attackers can exploit the backup download endpoint by sending a GET request with 'action=getconfig' to retrieve a complete system configuration archive containing sensitive credentials.
Vendor
Minidvblinux
Product
Minidvblinux
CWE
CWE-260
Yayın Tarihi
2025-12-09 21:15:52
Güncelleme
2025-12-19 19:21:47
Source Identifier
disclosure@vulncheck.com
KEV Date Added
-

Kategoriler

Referanslar