CVE-2023-27197: Paxtechnology Pax a930 Firmware

Medium severity, CVSS 6.7. EPSS: 0.2% chance of exploitation in the next 30 days.

PAX A930 device with PayDroid_7.1.1_Virgo_V04.5.02_20220722 can allow an attacker to gain root access by running a crafted binary leveraging an exported function from a shared library. The attacker must have shell access to the device in order to exploit this vulnerability.

Affected products

  • Paxtechnology Pax a930 Firmware: version paydroid_7.1.1_virgo_v04.5.02_20220722 only

Published 2023-07-05. Last modified 2026-06-17.