Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-35905

Опубликовано: 15 июл. 2022
Источник: nvd
CVSS3: 3.3
EPSS Низкий

Описание

An issue was discovered in Bentley MicroStation before 10.17.0.x and Bentley View before 10.17.0.x. Using an affected version of MicroStation or MicroStation-based application to open an FBX file containing crafted data can force an out-of-bounds read. Exploitation of these vulnerabilities within the parsing of FBX files could enable an attacker to read information in the context of the current process.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:bentley:microstation:*:*:*:*:*:*:*:*
Версия до 10.17.0 (исключая)
cpe:2.3:a:bentley:view:*:*:*:*:*:*:*:*
Версия до 10.17.0 (исключая)

EPSS

Процентиль: 19%
0.0006
Низкий

3.3 Low

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 3.3
github
больше 3 лет назад

An issue was discovered in Bentley MicroStation before 10.17.0.x and Bentley View before 10.17.0.x. Using an affected version of MicroStation or MicroStation-based application to open an FBX file containing crafted data can force an out-of-bounds read. Exploitation of these vulnerabilities within the parsing of FBX files could enable an attacker to read information in the context of the current process.

EPSS

Процентиль: 19%
0.0006
Низкий

3.3 Low

CVSS3

Дефекты

CWE-125