Impact
KUNBUS RevPiPyLoad version 0.11.0 contains an improper pathname limitation flaw in its XML‑RPC file management API that permits a local unauthenticated attacker to request arbitrary file contents. By crafting malicious XML‑RPC calls to the management service, an attacker can read any file the RevPiPyLoad daemon can access, including configuration files and credential material. The weakness is a classic path‑traversal vulnerability (CWE‑22) that directly exposes sensitive data without requiring additional privileges.
Affected Systems
The flaw affects KUNBUS RevPiPyLoad, specifically version 0.11.0. No other versions or products are listed as vulnerable in the provided data. Operators using this software with an active local XML‑RPC interface should verify their installation version.
Risk and Exploitability
The CVSS score of 6.8 indicates medium severity. The EPSS score is not available, so the likelihood of exploit in the wild cannot be quantified from this data. The vulnerability is local and unauthenticated, meaning a threat actor must have network or physical access to the host running RevPiPyLoad. It is not listed in the CISA KEV catalog, suggesting no confirmed public exploits at this time. However, the ability to read sensitive files makes it a serious confidentiality risk if the host is compromised or if an attacker can reach the management interface.
OpenCVE Enrichment