What is CVE-2026-57472?
CVE-2026-57472 is a Path Traversal (CWE-22) vulnerability in the XML-RPC management interface of KUNBUS RevPiPyLoad version 0.11.0. It allows a local unauthenticated attacker to potentially perform file management operations outside the restricted directory. Immediate patching is recommended to prevent unauthorized file access.
Azərbaycanca: CVE-2026-57472 KUNBUS RevPiPyLoad proqramının 0.11.0 versiyasında XML-RPC interfeysində aşkarlanmış Path Traversal (CWE-22) zəifliyidir. Bu qüsur lokal autentifikasiya olunmamış hücumçuya fayl idarəetmə funksionallığı vasitəsilə məhdudlaşdırılmış kataloqdan kənara çıxmağa imkan verir. İstifadəçilərə potensial fayl manipulyasiyası risklərini azaltmaq üçün təhlükəsizlik yeniləmələrini tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-22; shared vendors: KUNBUS, Nozomi Networks
FAQ2
Which product and version is affected by CVE-2026-57472?
CVE-2026-57472 affects KUNBUS RevPiPyLoad version 0.11.0.
What type of vulnerability is CVE-2026-57472 and what is its potential impact?
This is a Path Traversal (CWE-22) vulnerability. It allows a local unauthenticated attacker to perform file management operations outside the restricted directory via the XML-RPC management interface.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.