Proxifier for Mac before 2.19.2, when first run, allows local users to gain privileges by replacing the KLoader binary with a Trojan horse program.
References
Link | Resource |
---|---|
https://m4.rkw.io/blog/cve20177690-local-root-privesc-in-proxifier-for-mac-219.html | Exploit Third Party Advisory |
https://www.exploit-db.com/exploits/43225/ | Third Party Advisory VDB Entry |
Configurations
History
15 Jul 2021, 20:40
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:proxifier:proxifier:*:*:*:*:*:macos:*:* | |
References | (EXPLOIT-DB) https://www.exploit-db.com/exploits/43225/ - Third Party Advisory, VDB Entry |
Information
Published : 2017-04-14 18:59
Updated : 2024-02-04 19:11
NVD link : CVE-2017-7690
Mitre link : CVE-2017-7690
CVE.ORG link : CVE-2017-7690
JSON object : View
Products Affected
proxifier
- proxifier
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')