Home

Description

Canon EOS Webcam Utility Pro for MAC OS version 2.3d (2.3.29) and earlier contains an improper directory permissions vulnerability. Exploitation of this vulnerability requires administrator access by a malicious user. An attacker could modify the directory, potentially resulting in code execution and ultimately leading to privilege escalation.

PUBLISHED Reserved 2025-06-11 | Published 2025-06-26 | Updated 2025-06-26 | Assigner Canon_EMEA




MEDIUM: 4.6CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N

Problem types

CWE-732: Incorrect Permission Assignment for Critical Resource

Product status

Default status
unaffected

Any version
affected

Credits

Isaac Ordonez finder

References

www.usa.canon.com/...canon-eos-webcam-utility-pro-for-mac-os vendor-advisory mitigation

www.canon-europe.com/psirt/advisory-information vendor-advisory

cve.org (CVE-2025-5995)

nvd.nist.gov (CVE-2025-5995)

Download JSON