cvedb.io
CVE-2022-26582
HIGH · CVSS 7.8
EPSS exploitation probability: 0%
Published 2022-12-16T22:15:08.973 · Last modified 2026-06-17T04:35:24.127

Summary

PAX A930 device with PayDroid_7.1.1_Virgo_V04.3.26T1_20210419 can allow an attacker to gain root access through command injection in systool client. The attacker must have shell access to the device in order to exploit this vulnerability.

Affected products

paxtechnology — paydroid

Does this affect you?

Add your gear to cvedb and we'll alert you only when paxtechnology ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.