CVE Details
Basic Information
| Title |
CVE-2025-4280 |
| Type |
cve |
| Published |
2025-05-22T10:15:55 |
| Last Seen |
2025-05-22T10:22:02 |
CVSS Information
| Base Score |
0.0 () |
| Attack Vector |
|
| Attack Complexity |
|
| Privileges Required |
|
| User Interaction |
|
| Scope |
|
| Confidentiality Impact |
|
| Integrity Impact |
|
| Availability Impact |
|
AI Analysis
| AI Description |
The MacOS version of Poedit bundles a Python interpreter that inherits the TCC permissions of the main application, allowing local attackers to potentially exploit these permissions for malicious activities. |
| AI Severity |
Medium |
| Vendor |
Poedit |
| Product |
Poedit |
| Affected Version |
|
Additional Information
| CVE List |
CVE-2025-4280 |
| CWE List |
CWE-276 |
| Bulletin Family |
cve |
Description
MacOS version of Poedit bundles a Python interpreter that inherits the Transparency, Consent, and Control (TCC) permissions granted by the user to the main application bundle. An attacker with local user access can invoke…
CVSS Score Summary
Base Score: %!f(string=#) ()
View Full CVE Details