QID 379410
QID 379410: Loom for MacOS Insufficient Information Vulnerability
An issue in Loom for macOS version 0.196.1 and before, allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.
Affected Versions
Loom for macOS version 0.196.1 and before
QID Detection Logic (Authenticated)
This qid checks for vulnerable version of Loom
On successful exploitation it allows remote attackers to execute arbitrary code via the RunAsNode and enableNodeClilnspectArguments settings.
Solution
Vendor has released fix. Download latest version from here.
Vendor References
CVEs related to QID 379410
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Loom |
|