CVE-2023-28830
08.08.2023, 10:15
A vulnerability has been identified in JT2Go (All versions < V14.2.0.5), Solid Edge SE2022 (All versions < V222.0 Update 13), Solid Edge SE2023 (All versions < V223.0 Update 4), Teamcenter Visualization V13.2 (All versions < V13.2.0.15), Teamcenter Visualization V13.3 (All versions < V13.3.0.11), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.5). The affected application contains a use-after-free vulnerability that could be triggered while parsing specially crafted ASM file. An attacker could leverage this vulnerability to execute code in the context of the current process.Enginsight
Vendor | Product | Version |
---|---|---|
siemens | jt2go | 𝑥 < 14.2.0.5 |
siemens | teamcenter_visualization | 13.2.0 ≤ 𝑥 < 13.2.0.15 |
siemens | teamcenter_visualization | 13.3.0 ≤ 𝑥 < 13.3.0.11 |
siemens | teamcenter_visualization | 14.1 ≤ 𝑥 < 14.1.0.11 |
siemens | teamcenter_visualization | 14.2 ≤ 𝑥 < 14.2.0.5 |
siemens | solid_edge_se2022 | - |
siemens | solid_edge_se2023 | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration