Aller au contenu

Fiche vulnérabilité

CVE-2023-24978 : faille élevée Siemens Tecnomatix Plant Simulation (CVSS 7.8)

Description

A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application is vulnerable to uninitialized pointer access while parsing specially crafted SPP files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-19788)

En bref

Sévérité
Élevée (CVSS 7.8)
Vecteur CVSS
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
Exploitation active
Non signalée par la CISA
Publication
14 févr. 2023
Dernière mise à jour
20 mars 2025

Produits concernés

  • Siemens Tecnomatix Plant Simulation

Références

Rechercher une autre vulnérabilité dans la base CVE