Security Advisory

CVE-2020-28044

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-11-01 17:39:38
Last updated 2024-08-04 16:33:56
Assigner mitre
State PUBLISHED

Description

An attacker with physical access to a PAX Point Of Sale device with ProlinOS through 2.4.161.8859R can boot it in management mode, enable the XCB service, and then list, read, create, and overwrite files with MAINAPP permissions.