Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8rqr-q2h3-j5xj

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in F-Secure SAFE 17.7 on macOS. Due to incorrect client version verification, an attacker can connect to a privileged XPC service, and execute privileged commands on the system. NOTE: the attacker needs to execute code on an already compromised machine.

An issue was discovered in F-Secure SAFE 17.7 on macOS. Due to incorrect client version verification, an attacker can connect to a privileged XPC service, and execute privileged commands on the system. NOTE: the attacker needs to execute code on an already compromised machine.

EPSS

Процентиль: 74%
0.00802
Низкий

Дефекты

CWE-862

Связанные уязвимости

CVSS3: 8.1
nvd
больше 5 лет назад

An issue was discovered in F-Secure SAFE 17.7 on macOS. Due to incorrect client version verification, an attacker can connect to a privileged XPC service, and execute privileged commands on the system. NOTE: the attacker needs to execute code on an already compromised machine.

EPSS

Процентиль: 74%
0.00802
Низкий

Дефекты

CWE-862