๐Ÿ” CVE Alert

CVE-2023-53770

UNKNOWN 0.0

MiniDVBLinux 5.4 Unauthenticated Configuration Download via Backup Endpoint

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

MiniDVBLinux 5.4 contains an unauthenticated configuration download vulnerability that allows remote attackers to access sensitive system configuration files through a direct object reference. Attackers can exploit the backup download endpoint by sending a GET request with 'action=getconfig' to retrieve a complete system configuration archive containing sensitive credentials.

CWE CWE-260
Vendor minidvblinux
Product minidvblinux(tm) distribution (mld)
Published Dec 9, 2025
Last Updated Apr 7, 2026
Stay Ahead of the Next One

Get instant alerts for minidvblinux minidvblinux(tm) distribution (mld)

Be the first to know when new unknown vulnerabilities affecting minidvblinux minidvblinux(tm) distribution (mld) are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

MiniDVBLinux / MiniDVBLinux(TM) Distribution (MLD)
<=5.4

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
exploit-db.com: https://www.exploit-db.com/exploits/51091 minidvblinux.de: https://www.minidvblinux.de zeroscience.mk: https://www.zeroscience.mk/en/vulnerabilities/ZSL-2022-5713.php vulncheck.com: https://www.vulncheck.com/advisories/minidvblinux-unauthenticated-configuration-download-via-backup-endpoint

Credits

LiquidWorm as Gjoko Krstic of Zero Science Lab