Use After Free Vulnerability in SOLIDWORKS eDrawings by Dassault Systèmes
CVE-2025-6971

7.8HIGH

Key Information:

Vendor
CVE Published:
15 July 2025

What is CVE-2025-6971?

A Use After Free vulnerability is present in the CATPRODUCT file handling within SOLIDWORKS eDrawings. Attackers may exploit this flaw by opening a maliciously crafted CATPRODUCT file, potentially leading to arbitrary code execution on the user's system. This poses significant risks if the affected software is used in environments that handle sensitive data or processes.

Affected Version(s)

SOLIDWORKS eDrawings Release SOLIDWORKS Desktop 2025 SP0

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2025-6971 : Use After Free Vulnerability in SOLIDWORKS eDrawings by Dassault Systèmes