Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-61129
HistoryAug 11, 2021 - 12:00 a.m.

Siemens Solid Edge XML External Entity Injection Vulnerability

2021-08-1100:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
siemens solid edge
xml injection
cad software
security vulnerability
remote attackers
compromise files
xml parser.

EPSS

0.001

Percentile

44.3%

Siemens Solid Edge is a 3D CAD software from Siemens, Germany. The software can be used in industries such as part design, assembly design, sheet metal design, welding design, etc. A security vulnerability exists in previous versions of Siemens Solid Edge SE2021 SE2021MP7, which stems from an XML external entity injection vulnerability in the underlying XML parser that could lead to affected applications by loading specially crafted xml files to, and remote attackers could exploit the vulnerability to compromise arbitrary files.

EPSS

0.001

Percentile

44.3%

Related for CNVD-2021-61129