Buffer Overflow Vulnerability in Tecnomatix Plant Simulation
CVE-2024-23795
7.8HIGH
Key Information:
- Vendor
- Siemens
- Vendor
- CVE Published:
- 13 February 2024
Summary
An identified vulnerability in Tecnomatix Plant Simulation from Siemens could potentially allow attackers to execute arbitrary code. The issue arises due to an out of bounds write that occurs during the parsing of specially crafted WRL files. This vulnerability affects Tecnomatix Plant Simulation V2201 prior to version 2201.0012 and V2302 prior to version 2302.0006, exposing users to significant security risks if not mitigated. Organizations using affected versions should prioritize patching to protect their systems from potential exploitation.
Affected Version(s)
Tecnomatix Plant Simulation V2201 0
Tecnomatix Plant Simulation V2302 0
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved