A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 7). The affected applications contain an out of bounds write past the end of an allocated structure while parsing specially crafted DFT files. This could allow an attacker to execute code in the context of the current process.
References
Link | Resource |
---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-811403.pdf | Patch Vendor Advisory |
https://cert-portal.siemens.com/productcert/pdf/ssa-811403.pdf | Patch Vendor Advisory |
Configurations
History
21 Nov 2024, 08:15
Type | Values Removed | Values Added |
---|---|---|
References | () https://cert-portal.siemens.com/productcert/pdf/ssa-811403.pdf - Patch, Vendor Advisory |
15 Aug 2023, 16:12
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://cert-portal.siemens.com/productcert/pdf/ssa-811403.pdf - Patch, Vendor Advisory | |
CWE | CWE-787 | |
CPE | cpe:2.3:a:siemens:solid_edge:se2023:-:*:*:*:*:*:* | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
First Time |
Siemens solid Edge
Siemens |
08 Aug 2023, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-08-08 10:15
Updated : 2024-11-21 08:15
NVD link : CVE-2023-39419
Mitre link : CVE-2023-39419
CVE.ORG link : CVE-2023-39419
JSON object : View
Products Affected
siemens
- solid_edge
CWE
CWE-787
Out-of-bounds Write