CVE-2019-12174
08.07.2019, 14:15
hide.me before 2.4.4 on macOS suffers from a privilege escalation vulnerability in the connectWithExecutablePath:configFilePath:configFileName method of the me_hide_vpnhelper.Helper class in the me.hide.vpnhelper macOS privilege helper tool. This method takes user-supplied input and can be used to escalate privileges, as well as obtain the ability to run any application on the system in the root context.Enginsight
Vendor | Product | Version |
---|---|---|
hide | hide.me | 𝑥 < 2.4.4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration