Description
A Use-After-Free vulnerability in SLDPRT file reading procedure exists in SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023. This vulnerability could allow an attacker to execute arbitrary code while opening a specially crafted SLDPRT file.
Published: 2023-07-12
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2023-34220 A Use-After-Free vulnerability in SLDPRT file reading procedure exists in SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023. This vulnerability could allow an attacker to execute arbitrary code while opening a specially crafted SLDPRT file.
History

Thu, 07 Nov 2024 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

3ds 3dexperience Solidworks
cve-icon MITRE

Status: PUBLISHED

Assigner: 3DS

Published:

Updated: 2024-11-07T18:16:32.428Z

Reserved: 2023-05-17T15:42:19.316Z

Link: CVE-2023-2762

cve-icon Vulnrichment

Updated: 2024-08-02T06:33:05.672Z

cve-icon NVD

Status : Modified

Published: 2023-07-12T08:15:09.953

Modified: 2024-11-21T07:59:14.523

Link: CVE-2023-2762

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses