We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.
Please see our statement on Data Privacy.
Fast CAD Reader application on MacOS was found to be installed with incorrect file permissions (rwxrwxrwx). This is inconsistent with standard macOS security practices, where applications should have drwxr-xr-x permissions. Incorrect permissions allow for Dylib Hijacking. Guest account, other users and applications can exploit this vulnerability for privilege escalation. This issue affects Fast CAD Reader in possibly all versions since the vendor has not responded to our messages. The tested version was 4.1.5
Reserved 2025-03-07 | Published 2025-03-26 | Updated 2025-03-26 | Assigner CERT-PLCWE-266 Incorrect Privilege Assignment
Karol Mazurek with AFINE
cert.pl/en/posts/2025/03/CVE-2025-2098/
apps.apple.com/pl/app/fast-cad-reader/id1484905765
Support options