Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-09118
HistoryFeb 14, 2023 - 12:00 a.m.

Siemens Solid Edge Out-of-Bounds Reading Vulnerability (CNVD-2023-09118)

2023-02-1400:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
siemens solid edge
cad software
vulnerability
out-of-bounds
datakit crosscadware_x64.dll
sldprt files
exploit
sensitive information

0.001 Low

EPSS

Percentile

37.0%

Siemens Solid Edge is a 3D CAD software from Siemens (Germany). The software can be used in industries such as part design, assembly design, sheet metal design, welding design, etc. An out-of-bounds read vulnerability exists in Siemens Solid Edge due to the Datakit CrossCadWare_x64.dll used in the affected product parsing specially crafted SLDPRT files that contain out-of-bounds beyond the end of the allocated buffer read. An attacker could exploit this vulnerability to disclose sensitive information.

0.001 Low

EPSS

Percentile

37.0%

Related for CNVD-2023-09118