Learn about CVE-2020-9063 affecting NCR SelfServ ATMs running APTRA XFS 05.01.00 or earlier, allowing attackers to execute arbitrary code with SYSTEM privileges. Find mitigation steps and preventive measures here.
NCR SelfServ ATMs running APTRA XFS 05.01.00 or earlier are vulnerable to a buffer overflow attack, allowing an attacker to execute arbitrary code with SYSTEM privileges.
Understanding CVE-2020-9063
NCR SelfServ ATMs running APTRA XFS 05.01.00 or earlier are susceptible to unauthorized code execution due to a lack of USB HID communication integrity.
What is CVE-2020-9063?
This CVE describes a vulnerability in NCR SelfServ ATMs that enables attackers with physical access to inject malicious payloads and execute arbitrary code on the host computer.
The Impact of CVE-2020-9063
The vulnerability allows attackers to exploit USB HID communications between the currency dispenser and the host computer, leading to unauthorized code execution with SYSTEM privileges.
Technical Details of CVE-2020-9063
NCR SelfServ ATMs running APTRA XFS 05.01.00 or earlier are affected by a critical security flaw.
Vulnerability Description
The vulnerability arises from the lack of authentication and integrity protection in USB HID communications, enabling attackers to perform a buffer overflow attack.
Affected Systems and Versions
Exploitation Mechanism
Attackers with physical access to internal ATM components can inject malicious payloads, causing a buffer overflow on the host and executing arbitrary code with SYSTEM privileges.
Mitigation and Prevention
Immediate action is crucial to mitigate the risks posed by CVE-2020-9063.
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates