PT-2023-16558 · Hypr · Hypr Workforce Access

Miguel Silva

·

Published

2023-04-28

·

Updated

2023-05-09

·

CVE-2023-0834

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions HYPR Workforce Access versions 6.12 through 8.1
Description The issue is related to an Incorrect Permission Assignment for Critical Resource vulnerability in HYPR Workforce Access on MacOS, allowing Privilege Escalation.
Recommendations For versions 6.12 through 8.1, update to version 8.1 or later to resolve the issue. As a temporary workaround, consider restricting access to critical resources to minimize the risk of exploitation.

Fix

Incorrect Permission

Weakness Enumeration

Related Identifiers

CVE-2023-0834

Affected Products

Hypr Workforce Access