Vulnerabilities (CVE)

Filtered by vendor Pax Subscribe
Filtered by product Prolinos
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-28044 1 Pax 1 Prolinos 2020-11-17 7.2 HIGH 6.8 MEDIUM
An attacker with physical access to a PAX Point Of Sale device with ProlinOS through 2.4.161.8859R can boot it in management mode, enable the XCB service, and then list, read, create, and overwrite files with MAINAPP permissions.