CVE-2018-4041: Input Validation
Published Jan 10, 2019
·Updated
An exploitable privilege escalation vulnerability exists in the helper service of Clean My Mac X, version 4.04, due to improper input validation. An attacker with local access could exploit this vulnerability to modify the file system as root.
Affected Software
1 affected component
Macpaw Cleanmymac X=4.04
Event History
Jan 10, 2019
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-4041?
CVE-2018-4041 is a high severity privilege escalation vulnerability.
2
How do I fix CVE-2018-4041?
To fix CVE-2018-4041, upgrade Clean My Mac X to a version later than 4.04.
3
Who is affected by CVE-2018-4041?
CVE-2018-4041 affects users of Clean My Mac X version 4.04.
4
What can an attacker do by exploiting CVE-2018-4041?
An attacker can exploit CVE-2018-4041 to modify the file system with root privileges.
5
Does CVE-2018-4041 require local access to exploit?
Yes, CVE-2018-4041 requires local access to the affected system to be exploited.