PT-2007-1646 · Unsanity · Unsanity Application Enhancer
Published
2007-01-10
·
Updated
2017-07-29
·
CVE-2007-0162
CVSS v2.0
6.8
Medium
| Vector | AV:L/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Unsanity Application Enhancer (APE) version 2.0.2
Description
The issue concerns insecure permissions for the ApplicationEnhancer binary and the /Library/Frameworks/ApplicationEnhancer.framework directory. This allows local users to gain privileges by modifying or replacing the binary or library files.
Recommendations
For Unsanity Application Enhancer (APE) version 2.0.2, consider changing the permissions of the ApplicationEnhancer binary and the /Library/Frameworks/ApplicationEnhancer.framework directory to prevent local users from modifying or replacing these files.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Unsanity Application Enhancer