CVE-2023-49131

A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to uninitialized pointer access while parsing specially crafted PAR files. An attacker could leverage this vulnerability to execute code in the context of the current process.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:siemens:solid_edge_se2023:*:*:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:-:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0001:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0002:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0003:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0004:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0005:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0006:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0007:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0008:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0009:*:*:*:*:*:*

History

10 Jan 2024, 20:30

Type Values Removed Values Added
First Time Siemens
Siemens solid Edge Se2023
References () https://cert-portal.siemens.com/productcert/pdf/ssa-589891.pdf - () https://cert-portal.siemens.com/productcert/pdf/ssa-589891.pdf - Vendor Advisory
CPE cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0007:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:-:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0004:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0009:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0003:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0006:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0008:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0001:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0002:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:*:*:*:*:*:*:*:*
cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0005:*:*:*:*:*:*

09 Jan 2024, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-09 10:15

Updated : 2024-02-28 20:54


NVD link : CVE-2023-49131

Mitre link : CVE-2023-49131

CVE.ORG link : CVE-2023-49131


JSON object : View

Products Affected

siemens

  • solid_edge_se2023
CWE
CWE-824

Access of Uninitialized Pointer