Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f22x-pp6j-8h8j

Опубликовано: 17 дек. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6

Описание

PAX Technology A930 PayDroid 7.1.1 Virgo V04.4.02 20211201 allows root privileged attackers to install an unsigned application by copying the APK to /data/app, setting the appropriate permissions and rebooting the device.

PAX Technology A930 PayDroid 7.1.1 Virgo V04.4.02 20211201 allows root privileged attackers to install an unsigned application by copying the APK to /data/app, setting the appropriate permissions and rebooting the device.

EPSS

Процентиль: 8%
0.00031
Низкий

6 Medium

CVSS3

Дефекты

CWE-345

Связанные уязвимости

CVSS3: 6
nvd
около 3 лет назад

PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow a root privileged attacker to install unsigned packages. The attacker must have shell access to the device and gain root privileges in order to exploit this vulnerability.

EPSS

Процентиль: 8%
0.00031
Низкий

6 Medium

CVSS3

Дефекты

CWE-345