Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-37864


A vulnerability has been identified in Solid Edge (All Versions < SE2022MP9). The affected application contains an out of bounds write past the fixed-length heap-based buffer while parsing specially crafted DWG files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-17627)


Published

2022-10-11T11:15:10.233

Last Modified

2024-11-21T07:15:17.167

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 7.8 (HIGH)

Weaknesses
  • Type: Secondary
    CWE-122
  • Type: Primary
    CWE-787

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application siemens solid_edge se2020 Yes
Application siemens solid_edge se2020 Yes
Application siemens solid_edge se2020 Yes
Application siemens solid_edge se2020 Yes
Application siemens solid_edge se2020 Yes
Application siemens solid_edge se2020 Yes
Application siemens solid_edge se2020 Yes
Application siemens solid_edge se2020 Yes
Application siemens solid_edge se2020 Yes

References