Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-f3p9-m9fp-hjr4

Опубликовано: 24 сент. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 7.3
CVSS3: 8.4

Описание

A flaw has been found in Magnetism Studios Endurance up to 3.3.0 on macOS. This affects the function loadModuleNamed:WithReply of the file /Applications/Endurance.app/Contents/Library/LaunchServices/com.MagnetismStudios.endurance.helper of the component NSXPC Interface. Executing manipulation can lead to missing authentication. The attack needs to be launched locally. The exploit has been published and may be used.

A flaw has been found in Magnetism Studios Endurance up to 3.3.0 on macOS. This affects the function loadModuleNamed:WithReply of the file /Applications/Endurance.app/Contents/Library/LaunchServices/com.MagnetismStudios.endurance.helper of the component NSXPC Interface. Executing manipulation can lead to missing authentication. The attack needs to be launched locally. The exploit has been published and may be used.

EPSS

Процентиль: 10%
0.00034
Низкий

7.3 High

CVSS4

8.4 High

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 8.4
nvd
5 месяцев назад

A flaw has been found in Magnetism Studios Endurance up to 3.3.0 on macOS. This affects the function loadModuleNamed:WithReply of the file /Applications/Endurance.app/Contents/Library/LaunchServices/com.MagnetismStudios.endurance.helper of the component NSXPC Interface. Executing manipulation can lead to missing authentication. The attack needs to be launched locally. The exploit has been published and may be used.

EPSS

Процентиль: 10%
0.00034
Низкий

7.3 High

CVSS4

8.4 High

CVSS3

Дефекты

CWE-287