Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2023-4818

PAX A920 device allows to downgrade bootloader due to a bug in its version check. The signature is correctly checked and only bootloader signed by PAX can be used.  The attacker must have physical USB access to the device in order to exploit this vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.8%
CVSS Severity
CVSS v3 Score 7.6
Products affected by CVE-2023-4818
  • Paxtechnology » A920 » Version: N/A
    cpe:2.3:h:paxtechnology:a920:-
  • Paxtechnology » Paydroid » Version: 7.1.2_aquarius_11.1.50_20230614
    cpe:2.3:o:paxtechnology:paydroid:7.1.2_aquarius_11.1.50_20230614


Contact Us

Shodan ® - All rights reserved