Vulnerability Details CVE-2018-6822
In PureVPN 6.0.1 on macOS, HelperTool LaunchDaemon implements an unprotected XPC service that can be abused to execute system commands as root.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.3%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Products affected by CVE-2018-6822
-
cpe:2.3:a:purevpn:purevpn:5.3.0
-
cpe:2.3:a:purevpn:purevpn:5.4.0
-
cpe:2.3:a:purevpn:purevpn:5.5.0
-
cpe:2.3:a:purevpn:purevpn:5.6.0
-
cpe:2.3:a:purevpn:purevpn:5.8.0
-
cpe:2.3:a:purevpn:purevpn:5.8.1
-
cpe:2.3:a:purevpn:purevpn:5.9.0
-
cpe:2.3:a:purevpn:purevpn:6.0.0