cbcvebase.

Siemens Jt2Go vulnerabilities

169 known vulnerabilities affecting siemens/jt2go.

Total CVEs
169
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH123MEDIUM43LOW3

Vulnerabilities

Page 1 of 9
CVE-2020-26987P3HIGHCVSS 8.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26987 [HIGH] CWE-122 CVE-2020-26987: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing of TGA files. This could lead to a heap-based buffer overflow. An attacker could leverage this vulnerability to execute code in the context of the curr
nvd
CVE-2020-26985P3HIGHCVSS 8.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26985 [HIGH] CWE-122 CVE-2020-26985: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing of RGB and SGI files. This could result in a heap-based buffer overflow. An attacker could leverage this vulnerability to execute code in the context o
nvd
CVE-2020-26991P3HIGHCVSS 8.8fixed in 13.1.0.2vAll versions < V13.1.0.22021-01-12
CVE-2020-26991 [HIGH] CWE-822 CVE-2020-26991: A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (A A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (All versions < V13.1.0.2). Affected applications lack proper validation of user-supplied data when parsing ASM files. This could lead to pointer dereferences of a value obtained from untrusted source. An attacker could leverage this vulnerability to exec
nvd
CVE-2020-26990P3HIGHCVSS 8.8fixed in 13.1.0.1vAll versions < V13.1.0.12021-01-12
CVE-2020-26990 [HIGH] CWE-843 CVE-2020-26990: A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (A A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (All versions < V13.1.0.1). Affected applications lack proper validation of user-supplied data when parsing ASM files. A crafted ASM file could trigger a type confusion condition. An attacker could leverage this vulnerability to execute code in the contex
nvd
CVE-2020-26986P3HIGHCVSS 8.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26986 [HIGH] CWE-122 CVE-2020-26986: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing of JT files. This could lead to a heap-based buffer overflow. An attacker could leverage this vulnerability to execute code in the context of the curre
nvd
CVE-2020-26995P3HIGHCVSS 8.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26995 [HIGH] CWE-787 CVE-2020-26995: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing of SGI and RGB files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage this vulnerability
nvd
CVE-2020-26996P3HIGHCVSS 8.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26996 [HIGH] CWE-125 CVE-2020-26996: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing of CG4 files. This could result in a memory access past the end of an allocated buffer. An attacker could leverage this vulnerability to execute code i
nvd
CVE-2020-26980P3HIGHCVSS 8.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26980 [HIGH] CWE-843 CVE-2020-26980: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing JT files. A crafted JT file could trigger a type confusion condition. An attacker could leverage this vulnerability to execute code in the context of t
nvd
CVE-2020-26988P3HIGHCVSS 8.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26988 [HIGH] CWE-787 CVE-2020-26988: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing of PAR files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage this vulnerability to exec
nvd
CVE-2020-26984P3HIGHCVSS 8.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26984 [HIGH] CWE-787 CVE-2020-26984: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing of JT files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage this vulnerability to execu
nvd
CVE-2020-26983P3HIGHCVSS 8.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26983 [HIGH] CWE-787 CVE-2020-26983: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing PDF files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage this vulnerability to execute
nvd
CVE-2020-26982P3HIGHCVSS 8.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26982 [HIGH] CWE-787 CVE-2020-26982: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing CG4 and CGM files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage this vulnerability to
nvd
CVE-2020-26994P3HIGHCVSS 8.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26994 [HIGH] CWE-122 CVE-2020-26994: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing of PCX files. This could result in a heap-based buffer overflow. An attacker could leverage this vulnerability to execute code in the context of the cu
nvd
CVE-2020-26989P3HIGHCVSS 7.8fixed in 13.1.0.1vAll versions < V13.1.0.12021-01-12
CVE-2020-26989 [HIGH] CWE-121 CVE-2020-26989: A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Solid Edge SE2020 (All Vers A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Solid Edge SE2020 (All Versions < SE2020MP12), Solid Edge SE2021 (All Versions < SE2021MP2), Teamcenter Visualization (All versions < V13.1.0.1). Affected applications lack proper validation of user-supplied data when parsing of PAR files. This could result in a stack based buffe
nvd
CVE-2020-27001P3HIGHCVSS 7.8fixed in 13.1.0.2vAll versions < V13.1.0.22021-02-09
CVE-2020-27001 [HIGH] CWE-121 CVE-2020-27001: A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (A A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (All versions < V13.1.0.2). Affected applications lack proper validation of user-supplied data when parsing of PAR files. This could result in a stack based buffer overflow. An attacker could leverage this vulnerability to execute code in the context of t
nvd
CVE-2020-28383P3HIGHCVSS 7.8fixed in 13.1.0.1vAll versions < V13.1.0.12021-01-12
CVE-2020-28383 [HIGH] CWE-787 CVE-2020-28383: A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Solid Edge SE2020 (All Vers A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Solid Edge SE2020 (All Versions < SE2020MP12), Solid Edge SE2021 (All Versions < SE2021MP2), Teamcenter Visualization (All versions < V13.1.0.1). Affected applications lack proper validation of user-supplied data when parsing PAR files. This can result in an out of bounds write p
nvd
CVE-2021-34326P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34326 [HIGH] CWE-122 CVE-2021-34326: A vulnerability has been identified in JT2Go (All versions < V13.2), Solid Edge SE2021 (All Versions A vulnerability has been identified in JT2Go (All versions < V13.2), Solid Edge SE2021 (All Versions < SE2021MP5), Teamcenter Visualization (All versions < V13.2). The plmxmlAdapterSE70.dll library in affected applications lacks proper validation of user-supplied data when parsing PAR files. This could result in an out of bounds write past the fixed-l
nvd
CVE-2021-34329P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34329 [HIGH] CWE-122 CVE-2021-34329: A vulnerability has been identified in JT2Go (All versions < V13.2), Solid Edge SE2021 (All Versions A vulnerability has been identified in JT2Go (All versions < V13.2), Solid Edge SE2021 (All Versions < SE2021MP5), Teamcenter Visualization (All versions < V13.2). The plmxmlAdapterSE70.dll library in affected applications lacks proper validation of user-supplied data when parsing PAR files. This could result in an out of bounds write past the fixed-l
nvd
CVE-2021-34328P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34328 [HIGH] CWE-122 CVE-2021-34328: A vulnerability has been identified in JT2Go (All versions < V13.2), Solid Edge SE2021 (All Versions A vulnerability has been identified in JT2Go (All versions < V13.2), Solid Edge SE2021 (All Versions < SE2021MP5), Teamcenter Visualization (All versions < V13.2). The plmxmlAdapterSE70.dll library in affected applications lacks proper validation of user-supplied data when parsing PAR files. This could result in an out of bounds write past the fixed-l
nvd
CVE-2021-34327P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34327 [HIGH] CWE-122 CVE-2021-34327: A vulnerability has been identified in JT2Go (All versions < V13.2), Solid Edge SE2021 (All Versions A vulnerability has been identified in JT2Go (All versions < V13.2), Solid Edge SE2021 (All Versions < SE2021MP5), Teamcenter Visualization (All versions < V13.2). The plmxmlAdapterSE70.dll library in affected applications lacks proper validation of user-supplied data when parsing ASM files. This could result in an out of bounds write past the fixed-l
nvd
Siemens Jt2Go vulnerabilities | cvebase