Fiche vulnérabilité
CVE-2023-2762 : faille élevée 3ds 3dexperience solidworks (CVSS 7.8)
Description
A Use-After-Free vulnerability in SLDPRT file reading procedure exists in SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023. This vulnerability could allow an attacker to execute arbitrary code while opening a specially crafted SLDPRT file.
En bref
- Sévérité
- Élevée (CVSS 7.8)
- Vecteur CVSS
- CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 12 juil. 2023
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- 3ds 3dexperience solidworks