CVE-2019-4000

Publication date

2020-02-25 20:28:45

Family

tenable

State

PUBLISHED

Description

Improper neutralization of directives in dynamically evaluated code in Druva inSync Mac OS Client 6.5.0 allows a local, authenticated attacker to execute arbitrary Python expressions with root privileges.