A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 10). The affected application is vulnerable to uninitialized pointer access while parsing specially crafted PAR files. An attacker could leverage this vulnerability to execute code in the context of the current process.
References
Link | Resource |
---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-589891.pdf | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
10 Jan 2024, 20:30
Type | Values Removed | Values Added |
---|---|---|
First Time |
Siemens
Siemens solid Edge Se2023 |
|
References | () https://cert-portal.siemens.com/productcert/pdf/ssa-589891.pdf - Vendor Advisory | |
CPE | cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0007:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge_se2023:223.0:-:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0004:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0009:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0003:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0006:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0008:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0001:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0002:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge_se2023:*:*:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge_se2023:223.0:update_0005:*:*:*:*:*:* |
09 Jan 2024, 10:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-01-09 10:15
Updated : 2024-02-28 20:54
NVD link : CVE-2023-49131
Mitre link : CVE-2023-49131
CVE.ORG link : CVE-2023-49131
JSON object : View
Products Affected
siemens
- solid_edge_se2023
CWE
CWE-824
Access of Uninitialized Pointer