CVE-2015-3760 is a privilege escalation vulnerability affecting Apple OS X before version 10.10.5, stemming from improper validation of pathnames in the dyld environment. With a CVSS score of 7.2, it is considered highly severe, allowing a local attacker to gain full control over the system with low attack complexity. Exploit code is publicly available, including a Metasploit module, and it has garnered significant community discussion and media coverage, indicating its potential for active exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 10.10.4CPE matchmatch criteria | cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:L/Au:N/C:C/I:C/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.5 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.