Severity
7.8HIGH
EPSS
0.1%
top 67.81%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 10

Description

A vulnerability has been identified in Solid Edge (All versions < V2023 MP1). The DOCMGMT.DLL contains a memory corruption vulnerability that could be triggered while parsing files in different file formats such as PAR, ASM, DFT. This could allow an attacker to execute code in the context of the current process.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

NVDsiemens/solid_edge< se2023+1
CVEListV5siemens/solid_edgeAll versions < V2023 MP1

🔴Vulnerability Details

2
GHSA
GHSA-gch5-jf24-9j9p: A vulnerability has been identified in Solid Edge (All versions < V2023 MP1)2023-01-10
CVEList
CVE-2022-47967: A vulnerability has been identified in Solid Edge (All versions < V2023 MP1)2023-01-10
CVE-2022-47967 (HIGH CVSS 7.8) | A vulnerability has been identified | cvebase.io