CVE-2022-26582: Input Validation
PAX A930 device with PayDroid7.1.1VirgoV04.3.26T120210419 can allow an attacker to gain root access through command injection in systool client. The attacker must have shell access to the device in order to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-26582?
CVE-2022-26582 is considered a high severity vulnerability due to the potential for an attacker to gain root access to the device.
How do I fix CVE-2022-26582?
To fix CVE-2022-26582, it is recommended to apply security patches or updates provided by the device vendor, Pax Technology.
What devices are affected by CVE-2022-26582?
CVE-2022-26582 affects the PAX A930 device running PayDroid version 7.1.1 Virgo V04.3.26T1_20210419.
Can CVE-2022-26582 be exploited remotely?
No, CVE-2022-26582 requires the attacker to have shell access to the device to exploit the vulnerability.
What type of vulnerability is CVE-2022-26582?
CVE-2022-26582 is classified as a command injection vulnerability that allows an attacker to execute arbitrary commands on the affected device.