Buffer Overflow Vulnerability in Tecnomatix Plant Simulation
CVE-2024-23803

7.8HIGH

Key Information:

Vendor
Siemens
Vendor
CVE Published:
13 February 2024

Summary

A vulnerability exists in Tecnomatix Plant Simulation where an out of bounds write occurs when parsing a specially crafted SPP file. This flaw can lead to the potential execution of arbitrary code in the context of the current process, impacting system integrity and confidentiality. The vulnerability affects all versions of Tecnomatix Plant Simulation V2201 and versions prior to V2302.0007 of V2302.

Affected Version(s)

Tecnomatix Plant Simulation V2201 0

Tecnomatix Plant Simulation V2302 0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.