cbcvebase.

Siemens Jt2Go vulnerabilities

169 known vulnerabilities affecting siemens/jt2go.

Total CVEs
169
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH123MEDIUM43LOW3

Vulnerabilities

Page 2 of 9
CVE-2021-34313P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34313 [HIGH] CWE-122 CVE-2021-34313: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The Tiff_loader.dll library in affected applications lacks proper validation of user-supplied data when parsing TIFF files. This could result in an out of bounds write past the fixed-length heap-based buffer. An attacker could leverage
nvd
CVE-2021-34306P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34306 [HIGH] CWE-119 CVE-2021-34306: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The BMP_Loader.dll library in affected applications lacks proper validation of user-supplied data when parsing BMP files. This could result in a memory corruption condition. An attacker could leverage this vulnerability to execute code
nvd
CVE-2021-44000P3HIGHCVSS 7.8fixed in 13.2.0.7vAll versions < V13.2.0.72022-02-09
CVE-2021-44000 [HIGH] CWE-122 CVE-2021-44000: A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All vers A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All versions < SE2021MP9), Solid Edge SE2022 (All versions < SE2022MP1), Teamcenter Visualization V13.1 (All versions < V13.1.0.9), Teamcenter Visualization V13.2 (All versions < V13.2.0.7), Teamcenter Visualization V13.3 (All versions < V13.3.0.1). The plmxmlA
nvd
CVE-2021-34312P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34312 [HIGH] CWE-122 CVE-2021-34312: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The Tiff_loader.dll library in affected applications lacks proper validation of user-supplied data when parsing TIFF files. This could result in an out of bounds write past the fixed-length heap-based buffer. An attacker could leverage
nvd
CVE-2021-34317P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34317 [HIGH] CWE-122 CVE-2021-34317: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The BMP_loader.dll library in affected applications lacks proper validation of user-supplied data when parsing PCX files. This could result in an out of bounds write past the fixed-length heap-based buffer. An attacker could leverage t
nvd
CVE-2020-27006P3HIGHCVSS 7.8fixed in 13.1.0.1vAll versions < V13.1.0.12021-02-09
CVE-2020-27006 [HIGH] CWE-119 CVE-2020-27006: A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (A A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (All versions < V13.1.0.1). Affected applications lack proper validation of user-supplied data when parsing of PCT files. This could result in a memory corruption condition. An attacker could leverage this vulnerability to execute code in the context of t
nvd
CVE-2020-27000P3HIGHCVSS 7.8fixed in 13.1.0.1vAll versions < V13.1.0.12021-02-09
CVE-2020-27000 [HIGH] CWE-119 CVE-2020-27000: A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (A A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (All versions < V13.1.0.1). Affected applications lack proper validation of user-supplied data when parsing BMP files. This can result in a memory corruption condition. An attacker could leverage this vulnerability to execute code in the context of the cu
nvd
CVE-2021-34330P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34330 [HIGH] CWE-416 CVE-2021-34330: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The Jt981.dll library in affected applications lacks proper validation of user-supplied data prior to performing further free operations on an object when parsing JT files. An attacker could leverage this vulnerability to execute code
nvd
CVE-2021-44016P3HIGHCVSS 7.8fixed in 13.2.0.7vAll versions < V13.2.0.72022-02-09
CVE-2021-44016 [HIGH] CWE-119 CVE-2021-44016: A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All vers A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All versions < SE2021MP9), Solid Edge SE2022 (All versions < SE2022MP1), Teamcenter Visualization V13.1 (All versions < V13.1.0.9), Teamcenter Visualization V13.2 (All versions < V13.2.0.7), Teamcenter Visualization V13.3 (All versions < V13.3.0.1). The plmxmlA
nvd
CVE-2021-44018P3HIGHCVSS 7.8fixed in 13.2.0.7vAll versions < V13.2.0.72022-02-09
CVE-2021-44018 [HIGH] CWE-125 CVE-2021-44018: A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All vers A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All versions < SE2021MP9), Solid Edge SE2022 (All versions < SE2022MP1), Teamcenter Visualization V13.1 (All versions < V13.1.0.9), Teamcenter Visualization V13.2 (All versions < V13.2.0.7), Teamcenter Visualization V13.3 (All versions < V13.3.0.1). The plmxmlA
nvd
CVE-2021-34324P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34324 [HIGH] CWE-416 CVE-2021-34324: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The Jt981.dll library in affected applications lacks proper validation of user-supplied data prior to performing further free operations on an object when parsing JT files. An attacker could leverage this vulnerability to execute code
nvd
CVE-2020-26993P3HIGHCVSS 7.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26993 [HIGH] CWE-121 CVE-2020-26993: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing CGM files. This could lead to a stack based buffer overflow while trying to copy to a buffer in the font index handling function. An attacker could lev
nvd
CVE-2020-26992P3HIGHCVSS 7.8fixed in 13.1.0vAll versions < V13.1.02021-01-12
CVE-2020-26992 [HIGH] CWE-121 CVE-2020-26992: A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All A vulnerability has been identified in JT2Go (All versions < V13.1.0), Teamcenter Visualization (All versions < V13.1.0). Affected applications lack proper validation of user-supplied data when parsing CGM files. This could lead to a stack based buffer overflow while trying to copy to a buffer during font string handling. An attacker could leverage th
nvd
CVE-2020-27003P3HIGHCVSS 7.8fixed in 13.1.0.1vAll versions < V13.1.0.12021-02-09
CVE-2020-27003 [HIGH] CWE-822 CVE-2020-27003: A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (A A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (All versions < V13.1.0.1). Affected applications lack proper validation of user-supplied data when parsing TIFF files. This could lead to pointer dereferences of a value obtained from untrusted source. An attacker could leverage this vulnerability to exe
nvd
CVE-2020-27005P3HIGHCVSS 7.8fixed in 13.1.0.1vAll versions < V13.1.0.12021-02-09
CVE-2020-27005 [HIGH] CWE-787 CVE-2020-27005: A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (A A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (All versions < V13.1.0.1). Affected applications lack proper validation of user-supplied data when parsing of TGA files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage this vulnerability to
nvd
CVE-2020-26999P3HIGHCVSS 7.8fixed in 13.1.0.2vAll versions < V13.1.0.22021-02-09
CVE-2020-26999 [HIGH] CWE-125 CVE-2020-26999: A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (A A vulnerability has been identified in JT2Go (All versions < V13.1.0.2), Teamcenter Visualization (All versions < V13.1.0.2). Affected applications lack proper validation of user-supplied data when parsing of PAR files. This could result in a memory access past the end of an allocated buffer. An attacker could leverage this vulnerability to leak infor
nvd
CVE-2024-34085P3HIGHCVSS 7.8fixed in 2312.0001fixed in V2312.00012024-05-14
CVE-2024-34085 [HIGH] CWE-121 CVE-2024-34085: A vulnerability has been identified in JT2Go (All versions < V2312.0001), Teamcenter Visualization V A vulnerability has been identified in JT2Go (All versions < V2312.0001), Teamcenter Visualization V14.1 (All versions < V14.1.0.13), Teamcenter Visualization V14.2 (All versions < V14.2.0.10), Teamcenter Visualization V14.3 (All versions < V14.3.0.7), Teamcenter Visualization V2312 (All versions < V2312.0001). The affected applications contain a stac
nvd
CVE-2024-41902P3HIGHCVSS 7.8fixed in 2406.0003fixed in V2406.00032024-10-08
CVE-2024-41902 [HIGH] CWE-121 CVE-2024-41902: A vulnerability has been identified in JT2Go (All versions < V2406.0003). The affected application c A vulnerability has been identified in JT2Go (All versions < V2406.0003). The affected application contains a stack-based buffer overflow vulnerability that could be triggered while parsing specially crafted PDF files. This could allow an attacker to execute code in the context of the current process.
nvd
CVE-2021-32944P3HIGHCVSS 7.8fixed in 13.2.0.12021-06-17
CVE-2021-32944 [HIGH] CWE-416 CVE-2021-32944: A use-after-free issue exists in the DGN file-reading procedure in the Drawings SDK (All versions pr A use-after-free issue exists in the DGN file-reading procedure in the Drawings SDK (All versions prior to 2022.4) resulting from the lack of proper validation of user-supplied data. This can result in a memory corruption or arbitrary code execution, allowing attackers to cause a denial-of-service condition or execute code in the context of the curren
nvd
CVE-2021-44001P3HIGHCVSS 7.8fixed in 13.2.0.5vAll versions < V13.2.0.52021-12-14
CVE-2021-44001 [HIGH] CWE-787 CVE-2021-44001: A vulnerability has been identified in JT2Go (All versions < V13.2.0.5), Teamcenter Visualization (A A vulnerability has been identified in JT2Go (All versions < V13.2.0.5), Teamcenter Visualization (All versions < V13.2.0.5). The DL180pdfl.dll contains an out of bounds write past the end of an allocated structure while parsing specially crafted PDF files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-14
nvd
Siemens Jt2Go vulnerabilities | cvebase