PAX Technology Q80是中国PAX Technology公司的一款物联网设备。 PAX Technology Q80 2.6.33.6690R版本存在后置链接漏洞,该漏洞源于AIP文件解析过程中存在链接跟随问题,攻击者可通过创建符号链接滥用安装程序进程写入任意文件,进而结合其他漏洞以root权限执行任意代码。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| PAX Technology | Q80 | 2.6.33.6690R |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| PAX Technology | Q80 | 2.6.33.6690R | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-19908 | PAX Technology Q80 XCB Daemon Missing Authentication Vulnerability | |
| CVE-2026-19910 | PAX Technology Q80 Application Installer Signature Verification Bypass Remote Code Executi |
No comments yet