Exploitation Summary
EIP tracks 1 public exploit for CVE-2024-11467. PoCs published by null-event.
AI-analyzed exploit summary This repository provides a detailed technical analysis of CVE-2024-11467, focusing on the VMware Horizon Client's privileged helper tool (com.vmware.horizon.CDSHelper) and its XPC service implementation. It includes reverse engineering insights, decompiled code snippets, and an explanation of the vulnerability's root cause.
Description
Omnissa Horizon Client for macOS contains a Local privilege escalation (LPE) Vulnerability due to a logic flaw. Successful exploitation of this issue may allow attackers with user privileges to escalate their privileges to root on the system where the Horizon Client for macOS is installed.
Exploits (1)
This repository provides a detailed technical analysis of CVE-2024-11467, focusing on the VMware Horizon Client's privileged helper tool (com.vmware.horizon.CDSHelper) and its XPC service implementation. It includes reverse engineering insights, decompiled code snippets, and an explanation of the vulnerability's root cause.
References (2)
Scores
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H