Improper Directory Permissions in Canon EOS Webcam Utility Pro for Mac OS
CVE-2025-5995

4.6MEDIUM

What is CVE-2025-5995?

The Canon EOS Webcam Utility Pro for Mac OS versions 2.3d and earlier are susceptible to an improper directory permissions flaw. This vulnerability necessitates administrator-level access by an attacker, who could then alter directory settings. Successful exploitation may allow for malicious code execution, ultimately enabling privilege escalation, which could threaten the security of the operating environment.

Affected Version(s)

Canon EOS Webcam Utility Pro MacOS 0 <= 2.3d (2.3.29) (including)

References

CVSS V4

Score:
4.6
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Isaac Ordonez
.
CVE-2025-5995 : Improper Directory Permissions in Canon EOS Webcam Utility Pro for Mac OS