Impact
A race condition flaw in Dassault Systèmes’ BIOVIA Workbook releases from 2021 through 2026 permits a user to read data belonging to another user, resulting weakness is classified as CWE‑362, indicating a concurrency bug that can be triggered by overlapping operations within the same application instance.
Affected Systems
Dassault Systèmes’ BIOVIA Workbook, including all releases from 2021 to 2026.
Risk and Exploitability
The CVSS score of 8.1 marks the vulnerability as high severity, while the EPSS score of less than 1 % suggests that publicly available exploitation is very unlikely at present. The vulnerability is not listed in the CISA KEV catalog. Based on the description, the likely attack vector involves attackers executing concurrent actions within the same installation, such as manipulating user sessions or performing simultaneous data operations; however, no publicly documented exploits exist.
OpenCVE Enrichment