Lucene search

K
cvelistSiemensCVELIST:CVE-2021-41534
HistorySep 28, 2021 - 11:12 a.m.

CVE-2021-41534

2021-09-2811:12:28
CWE-125
siemens
www.cve.org
4
vulnerability
nx 1980 series
solid edge se2021
out of bounds read
allocated buffer
parsing jt files
information leak
zdi-can-13703

AI Score

3.9

Confidence

High

EPSS

0.001

Percentile

29.0%

A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The affected application is vulnerable to an out of bounds read past the end of an allocated buffer when parsing JT files. An attacker could leverage this vulnerability to leak information in the context of the current process (ZDI-CAN-13703).

CNA Affected

[
  {
    "product": "NX 1980 Series",
    "vendor": "Siemens",
    "versions": [
      {
        "status": "affected",
        "version": "All versions < V1984"
      }
    ]
  },
  {
    "product": "Solid Edge SE2021",
    "vendor": "Siemens",
    "versions": [
      {
        "status": "affected",
        "version": "All versions < SE2021MP8"
      }
    ]
  }
]

AI Score

3.9

Confidence

High

EPSS

0.001

Percentile

29.0%

Related for CVELIST:CVE-2021-41534