Skip to content
Noroxi

paxtechnology records

18 published records for vendor paxtechnology.

All records

18 records
  • Pax Technology PAXSTORE v7.0.8_20200511171508 and lower is affected by incorrect access control that can lead to remote privilege escalation

    HighCVSS 8.1No exploitEPSS 1%

    paxtechnology · paxstoreMay 7, 2021

  • Pax Technology PAXSTORE v7.0.8_20200511171508 and lower is affected by a token spoofing vulnerability.

    HighCVSS 8.2No exploitEPSS 1%

    paxtechnology · paxstoreMay 7, 2021

  • PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow an attacker to gain root access through command injection in systool

    HighCVSS 7.8No exploitEPSS 1%

    paxtechnology · paydroidDec 16, 2022

  • PAX Android based POS devices with PayDroid_8.1.0_Sagittarius_V11.1.50_20230614 or earlier can allow the execution of arbitrary commands wit

    HighCVSS 7.8No exploitEPSS 0%

    paxtechnology · paydroidJan 15, 2024

  • PAX Android based POS devices with PayDroid_8.1.0_Sagittarius_V11.1.50_20230614 or earlier can allow for command execution with high privile

    HighCVSS 7.8No exploitEPSS 0%

    paxtechnology · paydroidJan 15, 2024

  • CVE-2023-4818
    30Monitor

    PAX A920 device allows to downgrade bootloader due to a bug in its version check.

    HighCVSS 7.6No exploitEPSS 1%

    paxtechnology · paydroidJan 15, 2024

  • PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow the execution of specific command injections on selected binaries in

    MediumCVSS 6.8No exploitEPSS 2%

    paxtechnology · paydroidDec 16, 2022

  • Pax Technology PAXSTORE v7.0.8_20200511171508 and lower is affected by incorrect access control where password revalidation in sensitive ope

    HighCVSS 7.1No exploitEPSS 1%

    paxtechnology · paxstoreMay 7, 2021

  • PAX A920Pro/A50 devices with PayDroid_8.1.0_Sagittarius_V11.1.50_20230614 or earlier can allow local code execution via parameter injection

    MediumCVSS 6.8No exploitEPSS 1%

    paxtechnology · paydroidJan 15, 2024

  • PAX A930 device with PayDroid_7.1.1_Virgo_V04.5.02_20220722 can allow the execution of arbitrary commands by using the exec service and incl

    MediumCVSS 6.8No exploitEPSS 1%

    paxtechnology · pax a930 firmwareJul 5, 2023

  • PAX Android based POS devices with PayDroid_8.1.0_Sagittarius_V11.1.45_20230314 or earlier can allow the signed partition overwrite and subs

    MediumCVSS 6.8No exploitEPSS 1%

    paxtechnology · paydroidJan 15, 2024

  • PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow an unauthorized attacker to perform privileged actions through the e

    MediumCVSS 6.8No exploitEPSS 0%

    paxtechnology · paydroidDec 16, 2022

  • Pax Technology PAXSTORE v7.0.8_20200511171508 and lower is affected by XML External Entity (XXE) injection.

    MediumCVSS 6.5No exploitEPSS 1%

    paxtechnology · paxstoreMay 7, 2021

  • Pax Technology PAXSTORE v7.0.8_20200511171508 and lower is affected by an information disclosure vulnerability.

    MediumCVSS 6.5No exploitEPSS 1%

    paxtechnology · paxstoreMay 7, 2021

  • PAX Android based POS devices allow for escalation of privilege via improperly configured scripts.

    MediumCVSS 6.7No exploitEPSS 0%

    pax · pos terminalsOct 11, 2024

  • PAX A930 device with PayDroid_7.1.1_Virgo_V04.5.02_20220722 can allow an attacker to gain root access by running a crafted binary leveraging

    MediumCVSS 6.7No exploitEPSS 0%

    paxtechnology · pax a930 firmwareJul 5, 2023

  • PAX Technology A930 PayDroid_7.1.1_Virgo_V04.5.02_20220722 allows attackers to compile a malicious shared library and use LD_PRELOAD to bypa

    MediumCVSS 6.7No exploitEPSS 0%

    paxtechnology · pax a930 firmwareJul 5, 2023

  • PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow a root privileged attacker to install unsigned packages.

    MediumCVSS 6.0No exploitEPSS 0%

    paxtechnology · paydroidDec 16, 2022