Home
Home
Trends
Trends
Vulnerabilities
Vulnerabilities
News
News
Researchers
Researchers
Why dbugs?
Why dbugs?
Settings

Cameron Leong

Researcher fromGovTech Cybersecurity Group (CSG)
#17212of 56,334
16.6Total CVSS
Vulnerabilities · 2
High
2
PT-2026-81975
8.8
2026-08-26
Admin By Request · Admin By Request · CVE-2026-78236
An insecure PIN derivation mechanism in ABR allows a low-privileged user to escalate privileges to administrator by communicating over Cross-Process Communication (XPC) while masquerading as an Apple-signed process.
PT-2026-81976
7.8
2026-08-26
Admin By Request · Admin By Request · CVE-2026-78237
Insufficient input validation in ABR allows a low-privileged user to inject malicious entries into the sudoers file, resulting in persistent root access that remained effective after the ABR session ended.