Learn about CVE-2020-36128 affecting Pax Technology PAXSTORE v7.0.8_20200511171508 and lower versions. Understand the impact, affected systems, exploitation, and mitigation steps.
Pax Technology PAXSTORE v7.0.8_20200511171508 and lower versions are affected by a token spoofing vulnerability that allows attackers to impersonate payment terminals.
Understanding CVE-2020-36128
Pax Technology PAXSTORE v7.0.8_20200511171508 and lower versions are susceptible to a token spoofing vulnerability.
What is CVE-2020-36128?
The vulnerability in Pax Technology PAXSTORE allows attackers to intercept HTTPS traffic and craft X-Terminal-Token to authenticate their own payment terminals in the application store.
The Impact of CVE-2020-36128
This vulnerability enables attackers to impersonate payment terminals, potentially leading to unauthorized access and fraudulent activities.
Technical Details of CVE-2020-36128
Pax Technology PAXSTORE v7.0.8_20200511171508 and lower versions are affected by a token spoofing vulnerability.
Vulnerability Description
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
Immediate Steps to Take: