{"id":"CVE-2024-4395","details":"The XPC service within the audit functionality of Jamf Compliance Editor before version 1.3.1 on macOS can lead to local privilege escalation.","modified":"2026-07-09T15:34:32.383516Z","published":"2024-06-27T22:15:10.653Z","references":[{"type":"WEB","url":"https://github.com/Jamf-Concepts/jamf-compliance-editor/raw/v1.3.1/Jamf%20Compliance%20Editor%20-%20User%20Guide.pdf"},{"type":"WEB","url":"https://github.com/Jamf-Concepts/jamf-compliance-editor/releases/download/v1.3.1/JamfComplianceEditor.v1.3.1.pkg"},{"type":"WEB","url":"https://khronokernel.com/macos/2024/05/01/CVE-2024-4395.html"},{"type":"WEB","url":"https://trusted.jamf.com/docs/establishing-compliance-baselines#support"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/jamf-concepts/jamf-compliance-editor","events":[{"introduced":"0"},{"fixed":"3ffc4cc11bbc1a8fb3b5837cb805604f934633c6"}],"database_specific":{"extracted_events":[{"introduced":"0"},{"fixed":"1.3.1"}],"source":"DESCRIPTION"}}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2024-4395.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:L/AC:H/AT:P/PR:L/UI:A/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:N/AU:N/R:U/V:D/RE:M/U:Green"}]}