Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pfcx-4587-hw8m

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

A vulnerability has been identified in NX 1980 Series (All versions < V1984). The IFC adapter in affected application contains a use-after-free vulnerability that could be triggered while parsing user-supplied IFC files. An attacker could leverage this vulnerability to execute code in the context of the current process.

A vulnerability has been identified in NX 1980 Series (All versions < V1984). The IFC adapter in affected application contains a use-after-free vulnerability that could be triggered while parsing user-supplied IFC files. An attacker could leverage this vulnerability to execute code in the context of the current process.

EPSS

Процентиль: 63%
0.00448
Низкий

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 7.8
nvd
больше 4 лет назад

A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The IFC adapter in affected application contains a use-after-free vulnerability that could be triggered while parsing user-supplied IFC files. An attacker could leverage this vulnerability to execute code in the context of the current process.

CVSS3: 7.8
fstec
больше 4 лет назад

Уязвимость компонента IFC Adapter программного обеспечения для проектирования, разработки и производства продуктов Siemens NX 1980, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 63%
0.00448
Низкий

Дефекты

CWE-416