PAX A930 device with PayDroid_7.1.1_Virgo_V04.5.02_20220722 can allow the execution of arbitrary commands by using the exec service and including a specific word in the command to be executed. The attacker must have physical USB access to the device in order to exploit this vulnerability.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2023-07-05T00:00:00
Updated: 2024-06-04T17:24:43.327Z
Reserved: 2023-02-27T00:00:00
Link: CVE-2023-27198
JSON object: View
NVD Information
Status : Modified
Published: 2023-07-05T20:15:10.073
Modified: 2024-04-23T14:15:08.220
Link: CVE-2023-27198
JSON object: View
Redhat Information
No data.
CWE