7
CVSSv3

CVE-2017-15358

Published: 03/08/2018 Updated: 02/10/2018
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
CVSS v3 Base Score: 7 | Impact Score: 5.9 | Exploitability Score: 1
VMScore: 695
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Race condition in the Charles Proxy Settings suid binary in Charles Proxy prior to 4.2.1 allows local users to gain privileges via vectors involving the --self-repair option.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

charlesproxy charles

Exploits

Charles Proxy is a great mac application for debugging web services and inspecting SSL traffic for any application on your machine In order to inspect the SSL traffic it needs to configure the system to use a proxy so that it can capture the packets and use its custom root CA to decode the SSL Setting a system-wide proxy requires root permissio ...