Siemens Teamcenter Visualization Vulnerability Affects Multiple Releases
CVE-2024-53242
7.8HIGH
Key Information:
- Vendor
- Siemens
- Status
- Vendor
- CVE Published:
- 10 December 2024
Summary
A vulnerability has been discovered in Siemens Teamcenter Visualization and Tecnomatix Plant Simulation products, which involves an out of bounds read past the end of an allocated structure. This vulnerability occurs during the parsing of specially crafted WRL files, potentially enabling an attacker to execute code within the context of the current process. Users of the affected versions should implement the recommended updates provided by Siemens to mitigate this risk.
Affected Version(s)
Teamcenter Visualization V14.2 0
Teamcenter Visualization V14.3 0
Teamcenter Visualization V2312 0
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved