cve/2023/CVE-2023-41775.md
2024-05-25 21:48:12 +02:00

18 lines
802 B
Markdown

### [CVE-2023-41775](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-41775)
![](https://img.shields.io/static/v1?label=Product&message='direct'%20Desktop%20App%20for%20macOS&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3D%20ver%202.6.0%20and%20earlier%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Improper%20access%20control&color=brighgreen)
### Description
Improper access control vulnerability in 'direct' Desktop App for macOS ver 2.6.0 and earlier allows a local attacker to bypass access restriction and to use camrea, microphone, etc. of the device where the product is installed without the user's consent.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/kohnakagawa/kohnakagawa