Vulnerabilities (CVE)

Filtered by vendor Haystacksoftware Subscribe
Filtered by product Arq
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-16945 2 Apple, Haystacksoftware 2 Macos, Arq 2024-02-04 7.2 HIGH 7.8 HIGH
The standardrestorer binary in Arq 5.10 and earlier for Mac allows local users to write to arbitrary files and consequently gain root privileges via a crafted restore path.
CVE-2017-16928 2 Apple, Haystacksoftware 2 Macos, Arq 2024-02-04 7.2 HIGH 7.8 HIGH
The arq_updater binary in Arq 5.10 and earlier for Mac allows local users to write to arbitrary files and consequently gain root privileges via a crafted update URL, as demonstrated by file:///tmp/blah/Arq.zip.