Man-in-the-Middle Vulnerability in ESET Endpoint Antivirus for macOS
CVE-2016-9892
5.9MEDIUM
What is CVE-2016-9892?
The esets_daemon service in ESET Endpoint Antivirus and Endpoint Security for macOS fails to validate X.509 certificates from the SSL server edf.eset.com. This flaw enables attackers to perform man-in-the-middle attacks, potentially allowing them to spoof the SSL server and send fabricated license activation responses using a self-signed certificate. Moreover, this vulnerability could be exploited in conjunction with other issues, enabling remote code execution with root privileges.
