CVE-2018-18856 | LiquidVPN Client up to 1.37 on MacOS XPC Service openvpncmd os command injection (EDB-45782)
A vulnerability classified as critical has been found in LiquidVPN Client up to 1.37 on MacOS. This affects an unknown part of the component XPC Service. The manipulation of the argument openvpncmd as part of Parameter leads to os command injection.
This vulnerability is uniquely identified as CVE-2018-18856. The attack needs to be approached locally. Furthermore, there is an exploit available.