CVE-2024-8684
10.02.2025, 13:15
OS Command Injection vulnerability in Revolution Pi version 2022-07-28-revpi-buster from KUNBUS GmbH. This vulnerability could allow an authenticated attacker to execute OS commands on the device via the php/dal.php endpoint, in the arrSaveConfig parameter.
Awaiting analysis
This vulnerability is currently awaiting analysis.