Viscosity setuid-set ViscosityHelper Privilege Escalation
Posted by deepcore on March 5, 2013 – 1:54 am
This Metasploit module exploits a vulnerability in Viscosity 1.4.1 on Mac OS X. The vulnerability exists in the setuid ViscosityHelper, where an insufficient validation of path names allows execution of arbitrary python code as root. This Metasploit module has been tested successfully on Viscosity 1.4.1 over Mac OS X 10.7.5.
More:
Viscosity setuid-set ViscosityHelper Privilege Escalation
Post a reply
You must be logged in to post a comment.