Femap Vulnerability: Uninitialized Pointer Access in Catia MODEL Files
CVE-2024-24925
7.8HIGH
Summary
A significant vulnerability exists in Siemens Simcenter Femap, where all versions prior to V2306.0000 are susceptible to uninitialized pointer access. This flaw occurs when specially crafted Catia MODEL files are parsed, allowing an attacker to potentially execute arbitrary code within the context of the affected process. Given the sensitive nature of the operations typically conducted within Simcenter Femap, this vulnerability poses a considerable risk that necessitates prompt attention and remediation to protect users and their data from exploitation.
Affected Version(s)
Simcenter Femap 0
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved