Out-of-Bounds Read Vulnerability in Siemens Solid Edge SE2023
CVE-2023-49127
7.8HIGH
Summary
A vulnerability has been found in Siemens Solid Edge SE2023, specifically affecting all versions prior to V223.0 Update 10. This vulnerability arises from an out-of-bounds read caused by the parsing of specially crafted PAR files. An attacker could potentially exploit this flaw to execute arbitrary code in the context of the running process, thereby compromising the security of the affected system. It is crucial for users to apply the necessary updates to safeguard their applications from potential exploits. For further details, please refer to the official Siemens security advisory.
Affected Version(s)
Solid Edge SE2023 All versions < V223.0 Update 10
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved