An exploitable privilege escalation vulnerability exists in the helper service of Clean My Mac X, version 4.04, due to improper input validation. An attacker with local access could exploit this vulnerability to modify the file system as root.
References
Link | Resource |
---|---|
https://www.talosintelligence.com/vulnerability_reports/TALOS-2018-0721 | Third Party Advisory |
Configurations
History
07 Jun 2022, 17:17
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 4.9
v3 : 5.5 |
Information
Published : 2019-01-10 15:29
Updated : 2024-02-04 20:03
NVD link : CVE-2018-4047
Mitre link : CVE-2018-4047
CVE.ORG link : CVE-2018-4047
JSON object : View
Products Affected
macpaw
- cleanmymac_x
CWE
CWE-20
Improper Input Validation