CVE-2022-41613

Bentley Systems MicroStation Connectversions 

10.17.0.209 and prior are vulnerable to an Out-of-Bounds Read whenwhen parsing DGN files, which may allow an attacker to crash the product, disclose sensitive information, or execute arbitrary code.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
icscertCNA
7.8 HIGH
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVEADP
---
---