← Back

CVE-2024-33490

nvd nist
Published: May 14, 2024Modified: Mar 7, 2025

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A vulnerability has been identified in Solid Edge (All versions < V224.0 Update 5). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.

Affected (6)

1 product
Solid Edge Se2024
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Siemens
Before 224.0
Version 224.0
Version 224.0 update_0001
Version 224.0 update_0002
Version 224.0 update_0003
Version 224.0 update_0004

References (2)

Source: productcert@siemens.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.