CVE-2022-26581: Medium severity pax paydroid vulnerability
PAX A930 device with PayDroid7.1.1VirgoV04.3.26T120210419 can allow an unauthorized attacker to perform privileged actions through the execution of specific binaries listed in ADB daemon. The attacker must have physical USB access to the device in order to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-26581?
CVE-2022-26581 is classified as a high severity vulnerability because it allows unauthorized physical access to privileged actions on the PAX A930 device.
How do I fix CVE-2022-26581?
To mitigate CVE-2022-26581, ensure that physical access to the PAX A930 device is restricted and consider applying any available firmware updates.
What devices are affected by CVE-2022-26581?
The vulnerability CVE-2022-26581 affects the PAX A930 device running PayDroid version 7.1.1 Virgo V04.3.26T1 20210419.
What type of access is needed to exploit CVE-2022-26581?
Exploitation of CVE-2022-26581 requires physical USB access to the PAX A930 device.
Can CVE-2022-26581 lead to data breaches?
Yes, CVE-2022-26581 can potentially lead to data breaches by allowing attackers to perform unauthorized privileged actions on the device.