Description
Local privilege escalation due to insecure XPC service configuration. The following products are affected: Acronis True Image (macOS) before build 42389, Acronis True Image for SanDisk (macOS) before build 42198, Acronis True Image for Western Digital (macOS) before build 42197.
Problem types
Product status
Any version before 42389
Any version before 42198
Any version before 42197
Credits
@nullevent (https://hackerone.com/nullevent)
Carlos Garrido (https://pentraze.com/vulnerability-reports)
Pentraze Cyber Security (https://pentraze.com/vulnerability-reports)
References
security-advisory.acronis.com/advisories/SEC-8193 (SEC-8193)