Canon EOS Webcam Utility Pro for MAC OS version 2.3d (2.3.29) and earlier contains an improper directory permissions vulnerability. Exploitation of this vulnerability requires administrator access by a malicious user. An attacker could modify the directory, potentially resulting in code execution and ultimately leading to privilege escalation.
History

Thu, 26 Jun 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Thu, 26 Jun 2025 19:30:00 +0000

Type Values Removed Values Added
Description Canon EOS Webcam Utility Pro for MAC OS version 2.3d (2.3.29) and earlier contains an improper directory permissions vulnerability. Exploitation of this vulnerability requires administrator access by a malicious user. An attacker could modify the directory, potentially resulting in code execution and ultimately leading to privilege escalation.
Title Canon EOS Webcam Utility Pro for MAC OS contains an insecure permission issue potentially leading to code execution and privilege escalation
Weaknesses CWE-732
References
Metrics cvssV4_0

{'score': 4.6, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Canon_EMEA

Published: 2025-06-26T19:13:48.305Z

Updated: 2025-06-26T19:33:44.616Z

Reserved: 2025-06-11T12:01:21.085Z

Link: CVE-2025-5995

cve-icon Vulnrichment

Updated: 2025-06-26T19:30:46.424Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-06-26T20:15:32.193

Modified: 2025-06-30T18:39:09.973

Link: CVE-2025-5995

cve-icon Redhat

No data.