Search Results (3 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-57489 1 Shirt Pocket 1 Superduper 2025-12-02 6.5 Medium
Incorrect access control in the SDAgent component of Shirt Pocket SuperDuper! v3.10 allows attackers to escalate privileges to root due to the improper use of a setuid binary.
CVE-2025-61228 1 Shirt Pocket 1 Superduper 2025-12-02 7.8 High
An issue in Shirt Pocket SuperDuper! V.3.10 and before allows a local attacker to execute arbitrary code via the software update mechanism
CVE-2025-61229 1 Shirt Pocket 1 Superduper 2025-12-02 N/A
An issue in Shirt Pocket's SuperDuper! 3.10 and earlier allow a local attacker to modify the default task template to execute an arbitrary preflight script with root privileges and Full Disk Access, thus bypassing macOS privacy controls.