Out of Bounds Read Vulnerability in JT2Go and Teamcenter Visualization by Siemens
CVE-2022-41661
7.8HIGH
Key Information:
- Vendor
- Siemens
- Status
- Vendor
- CVE Published:
- 8 November 2022
Summary
An out of bounds read vulnerability exists in JT2Go and multiple versions of Teamcenter Visualization, where improper parsing of CGM files can allow an attacker to exploit this flaw. By leveraging this vulnerability, an attacker may execute arbitrary code in the context of the affected process, potentially leading to unauthorized access or system compromise.
Affected Version(s)
JT2Go All versions < V14.1.0.4
Teamcenter Visualization V13.2 All versions < V13.2.0.12
Teamcenter Visualization V13.3 All versions < V13.3.0.7
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved