Privilege Escalation Vulnerability in CatoNetworks CatoClient for macOS
CVE-2025-3886
5.7MEDIUM
What is CVE-2025-3886?
A security issue in the CatoNetworks CatoClient prior to version 5.8.0 allows attackers to exploit the PrivilegedHelperTool component. This exploitation can lead to privilege escalation and the potential for a time-of-check to time-of-use (TOCTOU) race condition, enabling malicious actors to execute unauthorized actions within the affected system. Users are strongly recommended to upgrade to the latest version to mitigate this risk and enhance their security posture.
Affected Version(s)
SDP Client MacOS 0 < 5.8.0
