PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow an unauthorized attacker to perform privileged actions through the execution of specific binaries listed in ADB daemon. The attacker must have physical USB access to the device in order to exploit this vulnerability.
History

Wed, 20 Nov 2024 15:15:00 +0000

Type Values Removed Values Added
First Time appeared Pax
Pax a930
CPEs cpe:2.3:a:pax:a930:*:*:*:*:*:*:*:*
Vendors & Products Pax
Pax a930
Metrics cvssV3_1

{'score': 6.8, 'vector': 'CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}

cvssV3_1

{'score': 5.2, 'vector': 'CVSS:3.1/AV:P/AC:L/PR:L/UI:R/S:U/C:L/I:H/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2022-12-16T00:00:00

Updated: 2024-11-20T14:39:59.183Z

Reserved: 2022-03-07T00:00:00

Link: CVE-2022-26581

cve-icon Vulnrichment

Updated: 2024-08-03T05:03:33.130Z

cve-icon NVD

Status : Modified

Published: 2022-12-16T22:15:08.923

Modified: 2024-11-21T06:54:09.740

Link: CVE-2022-26581

cve-icon Redhat

No data.