Solid Edge Vulnerability: Out of Bounds Read Could Lead to Code Execution
CVE-2024-33492

7.8HIGH

Key Information:

Vendor
Siemens
Vendor
CVE Published:
14 May 2024

Summary

An out of bounds read vulnerability has been detected in Solid Edge, permitting the potential for code execution within the current process due to improperly handled data in PAR files. This security flaw affects all versions of Solid Edge prior to V224.0 Update 5, indicating that users of earlier releases are at increased risk if they process maliciously crafted PAR files. Addressing this vulnerability is critical to maintaining the integrity and security of the system.

Affected Version(s)

Solid Edge 0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.