Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xr7h-8r7p-xpv9

Опубликовано: 11 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

PAX Android based POS devices allow for escalation of privilege via improperly configured scripts.

An attacker must have shell access with system account privileges in order to exploit this vulnerability. A patch addressing this issue was included in firmware version PayDroid_8.1.0_Sagittarius_V11.1.61_20240226.

PAX Android based POS devices allow for escalation of privilege via improperly configured scripts.

An attacker must have shell access with system account privileges in order to exploit this vulnerability. A patch addressing this issue was included in firmware version PayDroid_8.1.0_Sagittarius_V11.1.61_20240226.

EPSS

Процентиль: 3%
0.00016
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-276

Связанные уязвимости

CVSS3: 6.7
nvd
больше 1 года назад

PAX Android based POS devices allow for escalation of privilege via improperly configured scripts. An attacker must have shell access with system account privileges in order to exploit this vulnerability. A patch addressing this issue was included in firmware version PayDroid_8.1.0_Sagittarius_V11.1.61_20240226.

EPSS

Процентиль: 3%
0.00016
Низкий

6.7 Medium

CVSS3

Дефекты

CWE-276