PT-2023-21592 · Qualys+1 · Qualys Cloud Agent+1
CVE-2023-28143
·
Publicado
2023-04-18
·
Atualizado
2023-04-28
CVSS v3.1
7.0
Alta
| Vetor | AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Qualys Cloud Agent for macOS versions 2.5.1-75 through 3.7
Description
The Qualys Cloud Agent for macOS installer allows a local escalation of privilege, bounded only to the time of installation and only on older macOSX versions (macOS 10.15 and older). Attackers may exploit incorrect file permissions to gain ROOT command execution privileges on the host. This occurs during the installation of the PKG, where a step in the process involves extracting the package and copying files to several directories, allowing attackers to gain writable access to files and enabling a local escalation of privilege.
Recommendations
For Qualys Cloud Agent for macOS versions 2.5.1-75 through 3.7, update to version 3.7 or later to resolve the issue.
Correção
Untrusted Search Path
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Qualys Cloud Agent
Apple Macos