ID:11064 - Exploit for Improper access control in macOS - CVE-2024-44133

 
Main Vulnerability Database Exploits ID:11064 - Exploit for Improper access control in macOS - CVE-2024-44133

ID:11064 - Exploit for Improper access control in macOS - CVE-2024-44133

Published: January 15, 2025


Vulnerability identifier: #VU97393
Vulnerability risk: Low
CVE-ID: CVE-2024-44133
CWE-ID: CWE-284
Exploitation vector: Local access
Vulnerable software:
macOS

Link to public exploit:


Vulnerability description

The vulnerability allows a local application to gain unauthorized access to otherwise restricted functionality.

The vulnerability exists due to improper access restrictions in TCC on MDM managed devices. A local application can bypass certain Privacy preferences.


Remediation

Install updates from vendor's website.