CVE-2023-40307: SAP Privileges

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

An attacker with standard privileges on macOS when requesting administrator privileges from the application can submit input which causes a buffer overflow resulting in a crash of the application. This could make the application unavailable and allow reading or modification of data.

Affected products

  • SAP Privileges: before 1.5.4 (fixed in 1.5.4)

Published 2023-09-28. Last modified 2026-06-17.