The TD Bank TD Advanced Dashboard client through 3.0.3 for macOS allows arbitrary code execution because of the lack of electron::fuses::IsRunAsNodeEnabled (i.e., ELECTRON_RUN_AS_NODE can be used in production). This makes it easier for a compromised process to access banking information.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 06 May 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Td
Td advanced Dashboard |
|
| CPEs | cpe:2.3:a:td:advanced_dashboard:*:*:*:*:*:macos:*:* | |
| Vendors & Products |
Td
Td advanced Dashboard |
Wed, 04 Sep 2024 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-276 | |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-04T17:51:58.468Z
Reserved: 2023-12-17T00:00:00
Link: CVE-2023-50975
Updated: 2024-08-02T22:23:43.914Z
Status : Analyzed
Published: 2024-02-21T19:15:08.373
Modified: 2025-05-06T17:39:37.487
Link: CVE-2023-50975
No data.
OpenCVE Enrichment
No data.
Weaknesses