Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-53363
HistoryJul 14, 2021 - 12:00 a.m.

Siemens Jt2go and Siemens Teamcenter Visualization Buffer Over Read Vulnerability

2021-07-1400:00:00
China National Vulnerability Database
www.cnvd.org.cn
19
siemens
jt2go
teamcenter
visualization
buffer over read
vulnerability
bmp files
information leak
germany
software
collaboration

EPSS

0.001

Percentile

36.4%

Siemens Jt2go and Siemens Teamcenter Visualization are both products of Siemens AG, Germany. Siemens Jt2go is a JT file viewer. Siemens Teamcenter Visualization is a software that provides team collaboration capabilities for designing 2D and 3D scenes. A buffer over-read vulnerability exists in Siemens JT2Go versions prior to 13.2 and Teamcenter Visualization versions prior to 13.2, which stems from the failure of the BMP_Loader.dll library to properly validate user-supplied data when parsing BMP files, and could be exploited to leak information in the context of the current process. The vulnerability can be exploited to leak information in the context of the current process.

EPSS

0.001

Percentile

36.4%

Related for CNVD-2021-53363