A vulnerability was found in KUNBUS Revolution Pi 2022-07-28-revpi-buster. It has been rated as critical. Affected by this issue is some unknown functionality of the file /pictory/php/getFileList.php. The manipulation of the argument dir leads to path traversal.

This vulnerability is handled as CVE-2024-8685. The attack may be launched remotely. There is no exploit available.