7.8

CVE-2017-2675

Little Snitch version 3.0 through 3.7.3 suffer from a local privilege escalation vulnerability in the installer part. The vulnerability is related to the installation of the configuration file "at.obdev.littlesnitchd.plist" which gets installed to /Library/LaunchDaemons.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
ObdevLittle Snitch Version3.0
ObdevLittle Snitch Version3.0.1
ObdevLittle Snitch Version3.0.2
ObdevLittle Snitch Version3.0.3
ObdevLittle Snitch Version3.0.4
ObdevLittle Snitch Version3.1
ObdevLittle Snitch Version3.1.1
ObdevLittle Snitch Version3.3
ObdevLittle Snitch Version3.3.1
ObdevLittle Snitch Version3.3.2
ObdevLittle Snitch Version3.3.3
ObdevLittle Snitch Version3.3.4
ObdevLittle Snitch Version3.4
ObdevLittle Snitch Version3.4.1
ObdevLittle Snitch Version3.4.2
ObdevLittle Snitch Version3.5
ObdevLittle Snitch Version3.5.1
ObdevLittle Snitch Version3.5.2
ObdevLittle Snitch Version3.5.3
ObdevLittle Snitch Version3.6
ObdevLittle Snitch Version3.6.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.05% 0.125
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.8 1.8 5.9
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 4.6 3.9 6.4
AV:L/AC:L/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.