CVE-2012-1025: Dream-Multimedia-Tv ENIGMA2 Webinterface

Medium severity, CVSS 5.0. EPSS: 5.7% chance of exploitation in the next 30 days.

Absolute path traversal vulnerability in file in Enigma2 Webinterface 1.6.0 through 1.6.8, 1.6rc3, and 1.7.0 allows remote attackers to read arbitrary files via a full pathname in the file parameter.

Affected products

  • Dream-Multimedia-Tv ENIGMA2 Webinterface: version 1.6 only; version 1.6.0 only; version 1.6.1 only; version 1.6.2 only; version 1.6.3 only; version 1.6.4 only; …

Published 2012-02-08. Last modified 2026-06-16.