Impact
The vulnerability allows a user with local access to escalated privileges on the impacted macOS device. By exploiting the flaw, an attacker can execute code with higher privileges, potentially taking full control of the system. The weakness corresponds to CWE‑22, indicating a path traversal or local file access error that bypasses necessary privilege checks.
Affected Systems
Omnissa Workspace ONE Assist for macOS is affected. No specific version information is provided, so all releases of the product are considered potentially vulnerable until the vendor issues a patch.
Risk and Exploitability
The CVSS score of 7.8 indicates high severity. EPSS data is not available, and the vulnerability is not listed in the CISA KEV catalog. Based on the description, the attack vector is inferred to be local, meaning the attacker must have physical or console access to the macOS system. Exploitability appears straightforward for users who can run code locally, making this a significant risk in environments where local users may have elevated privileges.
OpenCVE Enrichment