CVE-2018-4044 describes a privilege escalation vulnerability in the helper service of CleanMyMac X, version 4.04, stemming from improper input validation. An attacker with local access could leverage this flaw to modify the file system with root privileges. This vulnerability has a CVSS score of 5.5 (Medium), indicating a low attack complexity and requiring local access, but with a high impact on integrity. There is no evidence of active exploitation, nor are there publicly available exploit modules like Metasploit or Nuclei, and it is not listed in the KEV catalog. Community discussion and media coverage are minimal, suggesting low public attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
4.04CPE matchmatch criteria | cpe:2.3:a:macpaw:cleanmymac_x:4.04:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.