Aller au contenu

Fiche vulnérabilité

CVE-2021-25177 : faille élevée opendesign drawings software… (CVSS 7.8)

Description

An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A Type Confusion issue exists when rendering malformed .DXF and .DWG files. This can allow attackers to cause a crash, potentially enabling a denial of service attack (Crash, Exit, or Restart).

En bref

Sévérité
Élevée (CVSS 7.8)
Vecteur CVSS
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
18 janv. 2021
Dernière mise à jour
17 juin 2026

Produits concernés

  • opendesign drawings software development kit
  • siemens comos
  • siemens jt2go
  • siemens teamcenter visualization

Références

Rechercher une autre vulnérabilité dans la base CVE