What is CVE-2026-19910?
This vulnerability allows a signature verification bypass in the application installer of PAX Technology Q80, leading to remote code execution. Network-adjacent attackers can execute arbitrary code on affected installations without authentication. Immediate patching per vendor guidance is required.
Azərbaycanca: Bu zəiflik PAX Technology Q80 qurğularında tətbiq quraşdırıcısının imza yoxlama mexanizmini keçərək uzaqdan kod icrasına imkan verir. Təsirə məruz qalan sistemlər üçün şəbəkəyə bitişik təcavüzkarlar identifikasiya olmadan ixtiyari kod icra edə bilərlər. Dərhal istehsalçının təhlükəsizlik yeniləməsini tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-287
FAQ2
What does CVE-2026-19910 cause in PAX Technology Q80 devices?
This vulnerability allows a signature verification bypass in the application installer, leading to remote code execution (RCE).
Do attackers need authentication to exploit CVE-2026-19910?
No, network-adjacent attackers can execute arbitrary code without authentication.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.