A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0018), Tecnomatix Plant Simulation V2404 (All versions < V2404.0007). The affected applications contain a stack based overflow vulnerability while parsing specially crafted WRL files.
This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-24486)
Metrics
Affected Vendors & Products
References
History
Wed, 20 Nov 2024 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-787 |
Mon, 18 Nov 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Siemens
Siemens tecnomatix Plant Simulation |
|
CPEs | cpe:2.3:a:siemens:tecnomatix_plant_simulation:*:*:*:*:*:*:*:* | |
Vendors & Products |
Siemens
Siemens tecnomatix Plant Simulation |
|
Metrics |
ssvc
|
Mon, 18 Nov 2024 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0018), Tecnomatix Plant Simulation V2404 (All versions < V2404.0007). The affected applications contain a stack based overflow vulnerability while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-24486) | |
Weaknesses | CWE-121 | |
References |
| |
Metrics |
cvssV3_1
|
MITRE
Status: PUBLISHED
Assigner: siemens
Published: 2024-11-18T15:39:35.577Z
Updated: 2024-11-18T18:08:38.319Z
Reserved: 2024-11-14T12:25:53.336Z
Link: CVE-2024-52572
Vulnrichment
Updated: 2024-11-18T17:58:53.209Z
NVD
Status : Analyzed
Published: 2024-11-18T16:15:28.767
Modified: 2024-11-20T14:32:21.533
Link: CVE-2024-52572
Redhat
No data.