Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9f4c-6r28-3vgp

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

BinaryNights ForkLift 3.x before 3.4 has a local privilege escalation vulnerability because the privileged helper tool implements an XPC interface that allows file operations to any process (copy, move, delete) as root and changing permissions.

BinaryNights ForkLift 3.x before 3.4 has a local privilege escalation vulnerability because the privileged helper tool implements an XPC interface that allows file operations to any process (copy, move, delete) as root and changing permissions.

EPSS

Процентиль: 40%
0.00186
Низкий

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 7.8
nvd
около 5 лет назад

BinaryNights ForkLift 3.x before 3.4 has a local privilege escalation vulnerability because the privileged helper tool implements an XPC interface that allows file operations to any process (copy, move, delete) as root and changing permissions.

EPSS

Процентиль: 40%
0.00186
Низкий

Дефекты

CWE-269