CVE-2018-4045 describes a privilege escalation vulnerability in CleanMyMac X version 4.04, stemming from improper input validation within its helper service. A local attacker could leverage this flaw to modify the file system with root privileges. Rated Medium (CVSS 5.5), this vulnerability requires local access and has a high impact on integrity. There is no evidence of active exploitation, nor are there publicly available exploit modules like Metasploit or Nuclei, and it has received limited community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
4.04CPE matchmatch criteria | cpe:2.3:a:macpaw:cleanmymac_x:4.04:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.