CVE-2023-41846

CWE-119Buffer Overflow3 documents3 sources
Severity
7.8HIGH
EPSS
0.1%
top 77.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 12
Latest updateSep 14

Description

A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0002). The affected application is vulnerable to memory corruption while parsing specially crafted SPP files. This could allow an attacker to execute code in the context of the current process.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages3 packages

CVEListV5siemens/tecnomatix_plant_simulation_v2201All versions < V2201.0008
CVEListV5siemens/tecnomatix_plant_simulation_v2302All versions < V2302.0002
NVDsiemens/tecnomatix22012201.0008+1

🔴Vulnerability Details

2
GHSA
GHSA-r346-xcg6-2jfc: A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V22012023-09-14
CVEList
CVE-2023-41846: A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V22012023-09-12
CVE-2023-41846 (HIGH CVSS 7.8) | A vulnerability has been identified | cvebase.io