Impact
The flaw is an insecure PIN derivation mechanism that allows a low‑privileged user to impersonate an Apple‑signed process via Cross‑Process Communication (XPC). This mishandling of authentication can lead to full administrator access, enabling the attacker to modify system settings, install software, or exfiltrate data. The weakness stems from improper handling of process identity, aligned with a typical authorization flaw.
Affected Systems
Admin By Request (ABR) on all unwary versions; the exact version list was not provided, so users should verify they are running the latest release as recommended.
Risk and Exploitability
With a CVSS score of 8.8, the vulnerability is considered high severity. The EPSS score is not available, suggesting that the actual exploitation probability could be modest until an exploit is released. It is not listed in the CISA KEV catalog. The likely attack vector is local; an attacker must be able to send crafted XPC messages and masquerade as a signed process. The exploitation steps are not trivially generic, but once the attacker can forge XPC traffic, privilege escalation to administrator follows almost immediately.
OpenCVE Enrichment