CVE-2018-4047: Input Validation
Published Jan 10, 2019
·Updated
An exploitable privilege escalation vulnerability exists in the helper service of Clean My Mac X, version 4.04, due to improper input validation. An attacker with local access could exploit this vulnerability to modify the file system as root.
Affected Software
1 affected component
Macpaw Cleanmymac X=4.04
Event History
Jan 10, 2019
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-4047?
CVE-2018-4047 is classified as a privilege escalation vulnerability.
2
How do I fix CVE-2018-4047?
To fix CVE-2018-4047, upgrade Clean My Mac X to a version later than 4.04.
3
What causes CVE-2018-4047?
CVE-2018-4047 is caused by improper input validation in the helper service of Clean My Mac X.
4
Who can exploit CVE-2018-4047?
CVE-2018-4047 can be exploited by attackers with local access to the system.
5
What impact does CVE-2018-4047 have?
CVE-2018-4047 allows an attacker to modify the file system as root, leading to severe security risks.