CVE-2020-15349: Binarynights Forklift
High severity, CVSS 7.8. EPSS: 0.7% chance of exploitation in the next 30 days.
BinaryNights ForkLift 3.x before 3.4 has a local privilege escalation vulnerability because the privileged helper tool implements an XPC interface that allows file operations to any process (copy, move, delete) as root and changing permissions.
Affected products
- Binarynights Forklift: from 3.0, before 3.4 (fixed in 3.4)
Published 2020-11-17. Last modified 2026-06-17.