CVE-2018-6823

Publication date

2018-02-07 16:00:00

Family

mitre

State

PUBLISHED

Description

In the VPN client in Mailbutler Shimo before 4.1.5.1 on macOS, the com.feingeist.shimo.helper tool LaunchDaemon implements an unprotected XPC service that can be abused to execute scripts as root.