Arbitrary File Overwrite Vulnerability in NoMachine for macOS
CVE-2023-39107
9.1CRITICAL
What is CVE-2023-39107?
An arbitrary file overwrite vulnerability in NoMachine Free Edition and Enterprise Client for macOS allows attackers to exploit hardlinks. This flaw can enable malicious actors to overwrite root-owned files, compromising system integrity and potentially leading to unauthorized access or data loss. Users are strongly encouraged to update their software to v8.8.1 or later to mitigate this risk.
