Show filters
7 Total Results
Displaying 1-7 of 7
Sort by:
Attacker Value
Unknown
CVE-2024-8685
Disclosure Date: February 10, 2025 (last updated February 11, 2025)
Path-Traversal vulnerability in Revolution Pi version 2022-07-28-revpi-buster from KUNBUS GmbH. This vulnerability could allow an authenticated attacker to list device directories via the ‘/pictory/php/getFileList.php’ endpoint in the ‘dir’ parameter.
0
Attacker Value
Unknown
CVE-2024-8684
Disclosure Date: February 10, 2025 (last updated February 11, 2025)
OS Command Injection vulnerability in Revolution Pi version 2022-07-28-revpi-buster from KUNBUS GmbH. This vulnerability could allow an authenticated attacker to execute OS commands on the device via the ‘php/dal.php’ endpoint, in the ‘arrSaveConfig’ parameter.
0
Attacker Value
Unknown
CVE-2019-6529
Disclosure Date: January 07, 2020 (last updated February 21, 2025)
An attacker could specially craft an FTP request that could crash the PR100088 Modbus gateway versions prior to release R02 (or Software Version 1.1.13166).
0
Attacker Value
Unknown
CVE-2019-6531
Disclosure Date: April 02, 2019 (last updated November 27, 2024)
An attacker could retrieve passwords from a HTTP GET request from the Kunbus PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) if the attacker is in an MITM position.
0
Attacker Value
Unknown
CVE-2019-6549
Disclosure Date: February 12, 2019 (last updated November 27, 2024)
An attacker could retrieve plain-text credentials stored in a XML file on PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) through FTP.
0
Attacker Value
Unknown
CVE-2019-6533
Disclosure Date: February 12, 2019 (last updated November 27, 2024)
Registers used to store Modbus values can be read and written from the web interface without authentication in the PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166).
0
Attacker Value
Unknown
CVE-2019-6527
Disclosure Date: February 12, 2019 (last updated November 27, 2024)
PR100088 Modbus gateway versions prior to Release R02 (or Software Version 1.1.13166) may allow an attacker to be able to change the password for an admin user who is currently or previously logged in, provided the device has not been restarted.
0