ZeroHour

CVE-2022-26579

CVSS 3.1
6.0 medium
EPSS
<1%p5
Published
()
Modified
Description

PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow a root privileged attacker to install unsigned packages. The attacker must have shell access to the device and gain root privileges in order to exploit this vulnerability.

Vendors
paxtechnology
Products
paydroid
Weakness
CWE-345
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H

In the news

No ingested article mentions this CVE yet.