Aller au contenu

Fiche vulnérabilité

CVE-2023-44086 : faille élevée Siemens Tecnomatix Plant Simulation… (CVSS 7.8)

Description

A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0009), Tecnomatix Plant Simulation V2302 (All versions < V2302.0003). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted SPP files. This could allow an attacker to execute code in the context of the current process.

En bref

Sévérité
Élevée (CVSS 7.8)
Vecteur CVSS
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
Exploitation active
Non signalée par la CISA
Publication
10 oct. 2023
Dernière mise à jour
27 févr. 2025

Produits concernés

  • Siemens Tecnomatix Plant Simulation V2201
  • Siemens Tecnomatix Plant Simulation V2302

Références

Rechercher une autre vulnérabilité dans la base CVE