High severity7.8NVD Advisory· Published Mar 3, 2026· Updated Apr 27, 2026
CVE-2026-2637
CVE-2026-2637
Description
iBoysoft NTFS for Mac contains a local privilege escalation vulnerability in its privileged helper daemon ntfshelperd. The daemon exposes an NSConnection service that runs as root without implementing any authentication or authorization checks.
This issue affects iBoysoft NTFS: 8.0.0.
Affected products
1- cpe:2.3:a:iboysoft:ntfs_for_mac:8.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- fluidattacks.com/advisories/cuartetonvdExploitThird Party Advisory
- iboysoft.com/ntfs-for-mac/nvdProduct
News mentions
0No linked articles in our index yet.