Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jh7w-p7gx-9479

Опубликовано: 26 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 4.6

Описание

Canon EOS Webcam Utility Pro for MAC OS version 2.3d (2.3.29) and earlier contains an improper directory permissions vulnerability. Exploitation of this vulnerability requires administrator access by a malicious user. An attacker could modify the directory, potentially resulting in code execution and ultimately leading to privilege escalation.

Canon EOS Webcam Utility Pro for MAC OS version 2.3d (2.3.29) and earlier contains an improper directory permissions vulnerability. Exploitation of this vulnerability requires administrator access by a malicious user. An attacker could modify the directory, potentially resulting in code execution and ultimately leading to privilege escalation.

EPSS

Процентиль: 4%
0.00018
Низкий

4.6 Medium

CVSS4

Дефекты

CWE-732

Связанные уязвимости

nvd
8 месяцев назад

Canon EOS Webcam Utility Pro for MAC OS version 2.3d (2.3.29) and earlier contains an improper directory permissions vulnerability. Exploitation of this vulnerability requires administrator access by a malicious user. An attacker could modify the directory, potentially resulting in code execution and ultimately leading to privilege escalation.

CVSS3: 4.2
fstec
8 месяцев назад

Уязвимость приложения для трансляции видео Canon EOS Webcam Utility Pro операционных систем macOS, связанная с неправильным назначением разрешений для критического ресурса, позволяющая нарушителю выполнить произвольный код и повысить свои привилегии

EPSS

Процентиль: 4%
0.00018
Низкий

4.6 Medium

CVSS4

Дефекты

CWE-732