CVE-2021-41547
14.12.2021, 12:15
A vulnerability has been identified in Teamcenter Active Workspace V4.3 (All versions < V4.3.11), Teamcenter Active Workspace V5.0 (All versions < V5.0.10), Teamcenter Active Workspace V5.1 (All versions < V5.1.6), Teamcenter Active Workspace V5.2 (All versions < V5.2.3). The application contains an unsafe unzipping pattern that could lead to a zip path traversal attack. This could allow and attacker to execute a remote shell with admin rights.
Vendor | Product | Version |
---|---|---|
siemens | teamcenter_active_workspace | 4.3 ≤ 𝑥 < 4.3.11 |
siemens | teamcenter_active_workspace | 5.0 ≤ 𝑥 < 5.0.10 |
siemens | teamcenter_active_workspace | 5.1 ≤ 𝑥 < 5.1.6 |
siemens | teamcenter_active_workspace | 5.2 ≤ 𝑥 < 5.2.3 |
𝑥
= Vulnerable software versions