CVE-2025-61229

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/12/2025
Last modified:
01/12/2025

Description

An issue in Shirt Pocket's SuperDuper! 3.10 and earlier allow a local attacker to modify the default task template to execute an arbitrary preflight script with root privileges and Full Disk Access, thus bypassing macOS privacy controls.

Impact