Buffer Overflow Vulnerability in Tecnomatix Plant Simulation
CVE-2024-23795

7.8HIGH

Key Information:

Vendor
Siemens
Vendor
CVE Published:
13 February 2024

Summary

An identified vulnerability in Tecnomatix Plant Simulation from Siemens could potentially allow attackers to execute arbitrary code. The issue arises due to an out of bounds write that occurs during the parsing of specially crafted WRL files. This vulnerability affects Tecnomatix Plant Simulation V2201 prior to version 2201.0012 and V2302 prior to version 2302.0006, exposing users to significant security risks if not mitigated. Organizations using affected versions should prioritize patching to protect their systems from potential exploitation.

Affected Version(s)

Tecnomatix Plant Simulation V2201 0

Tecnomatix Plant Simulation V2302 0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.