CVE-2023-42133 Information
Nov 01, 2024
cve
Description
PAX Android based POS devices allow for escalation of privilege via improperly configured scripts.
An attacker must have shell access with system account privileges in order to exploit this vulnerability. A patch addressing this issue was included in firmware version PayDroid_8.1.0_Sagittarius_V11.1.61_20240226.
Reference
https://ppn.paxengine.com/release/development? https://blog.stmcyber.com/pax-pos-cves-2023/ https://cert.pl/en/posts/2024/10/CVE-2023-42133 https://cert.pl/posts/2024/10/CVE-2023-42133
Share on: