← Back

CVE-2023-51439

nvd nist
Published: Jan 9, 2024Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A vulnerability has been identified in JT2Go (All versions < V14.3.0.6), Teamcenter Visualization V13.3 (All versions < V13.3.0.13), Teamcenter Visualization V14.1 (All versions < V14.1.0.12), Teamcenter Visualization V14.2 (All versions < V14.2.0.9), Teamcenter Visualization V14.3 (All versions < V14.3.0.6). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted CGM files. This could allow an attacker to execute code in the context of the current process.

Affected (5)

2 products
Jt2go
Teamcenter Visualization
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Before 14.3.0.6
Siemens
From 13.3.0 to 13.3.0.13
From 14.1 to 14.1.0.12
From 14.2 to 14.2.0.9
From 14.3 to 14.3.0.6

References (2)

Source: productcert@siemens.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.