vendor:
Murus
by:
m4rkw
7,8
CVSS
HIGH
Escalation Hijack Vulnerability
264
CWE
Product Name: Murus
Affected Version From: Murus 1.4.11
Affected Version To: Murus 1.4.11
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: macOS
2020
Murus 1.4.11 local root privilege escalation exploit
Murus firewall requires the user to authenticate every time in order to obtain the access it needs to modify the firewall settings. If a local attacker or malware is running as an admin user (ie has write access to /Applications/), they can subvert this process to silently obtain root access without the user knowing.
Mitigation:
Ensure that only trusted users have access to the system and that all users are using strong passwords.