cbcvebase.

Siemens Jt2Go vulnerabilities

169 known vulnerabilities affecting siemens/jt2go.

Total CVEs
169
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH123MEDIUM43LOW3

Vulnerabilities

Page 3 of 9
CVE-2021-27390P3HIGHCVSS 7.8fixed in 13.1.0.3vAll versions < V13.1.0.32021-06-08
CVE-2021-27390 [HIGH] CWE-787 CVE-2021-27390: A vulnerability has been identified in JT2Go (All versions < V13.1.0.3), Teamcenter Visualization (A A vulnerability has been identified in JT2Go (All versions < V13.1.0.3), Teamcenter Visualization (All versions < V13.1.0.3). The TIFF_loader.dll library in affected applications lacks proper validation of user-supplied data when parsing TIFF files. This could result in an out of bounds write past the end of an allocated structure. An attacker could l
nvd
CVE-2021-34305P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34305 [HIGH] CWE-787 CVE-2021-34305: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The Gif_loader.dll library in affected applications lacks proper validation of user-supplied data when parsing GIF files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage th
nvd
CVE-2021-34318P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34318 [HIGH] CWE-787 CVE-2021-34318: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The BMP_loader.dll library in affected applications lacks proper validation of user-supplied data when parsing PCT files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage th
nvd
CVE-2021-44013P3HIGHCVSS 7.8fixed in 13.2.0.5vAll versions < V13.2.0.52021-12-14
CVE-2021-44013 [HIGH] CWE-787 CVE-2021-44013: A vulnerability has been identified in JT2Go (All versions < V13.2.0.5), Teamcenter Visualization (A A vulnerability has been identified in JT2Go (All versions < V13.2.0.5), Teamcenter Visualization (All versions < V13.2.0.5). The DL180pdfl.dll contains an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-151
nvd
CVE-2021-34301P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34301 [HIGH] CWE-416 CVE-2021-34301: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The BMP_Loader.dll library in affected applications lacks proper validation of user-supplied data prior to performing further free operations on an object when parsing BMP files. An attacker could leverage this vulnerability to execute
nvd
CVE-2021-34298P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34298 [HIGH] CWE-416 CVE-2021-34298: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The BMP_Loader.dll library in affected applications lacks proper validation of user-supplied data prior to performing further free operations on an object when parsing BMP files. An attacker could leverage this vulnerability to execute
nvd
CVE-2021-44014P3HIGHCVSS 7.8fixed in 13.2.0.52021-12-14
CVE-2021-44014 [HIGH] CWE-416 CVE-2021-44014: A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All version A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All versions < V13.1.1.0), Solid Edge (All versions < V2023). The Jt1001.dll contains a use-after-free vulnerability that could be triggered while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of t
nvd
CVE-2021-38405P3HIGHCVSS 7.8fixed in 13.2.0.72023-11-21
CVE-2021-38405 [HIGH] CWE-119 CVE-2021-38405: The Datalogics APDFL library used in affected products is vulnerable to memory corruption condition The Datalogics APDFL library used in affected products is vulnerable to memory corruption condition while parsing specially crafted PDF files. An attacker could leverage this vulnerability to execute code in the context of the current process.
nvd
CVE-2023-38070P3HIGHCVSS 7.8fixed in 14.3.0.1vAll versions < V14.3.0.12023-09-12
CVE-2023-38070 [HIGH] CWE-121 CVE-2023-38070: A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V1 A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0
nvd
CVE-2023-51745P3HIGHCVSS 7.8fixed in 14.3.0.6vAll versions < V14.3.0.62024-01-09
CVE-2023-51745 [HIGH] CWE-121 CVE-2023-51745: A vulnerability has been identified in JT2Go (All versions < V14.3.0.6), Teamcenter Visualization V1 A vulnerability has been identified in JT2Go (All versions < V14.3.0.6), Teamcenter Visualization V13.3 (All versions < V13.3.0.13), Teamcenter Visualization V14.1 (All versions < V14.1.0.12), Teamcenter Visualization V14.2 (All versions < V14.2.0.9), Teamcenter Visualization V14.3 (All versions < V14.3.0.6). The affected applications contain a stack
nvd
CVE-2023-51746P3HIGHCVSS 7.8fixed in 14.3.0.6vAll versions < V14.3.0.62024-01-09
CVE-2023-51746 [HIGH] CWE-121 CVE-2023-51746: A vulnerability has been identified in JT2Go (All versions < V14.3.0.6), Teamcenter Visualization V1 A vulnerability has been identified in JT2Go (All versions < V14.3.0.6), Teamcenter Visualization V13.3 (All versions < V13.3.0.13), Teamcenter Visualization V14.1 (All versions < V14.1.0.12), Teamcenter Visualization V14.2 (All versions < V14.2.0.9), Teamcenter Visualization V14.3 (All versions < V14.3.0.6). The affected applications contain a stack
nvd
CVE-2024-34086P3HIGHCVSS 7.8fixed in 2312.0001fixed in V2312.00012024-05-14
CVE-2024-34086 [HIGH] CWE-787 CVE-2024-34086: A vulnerability has been identified in JT2Go (All versions < V2312.0001), Teamcenter Visualization V A vulnerability has been identified in JT2Go (All versions < V2312.0001), Teamcenter Visualization V14.1 (All versions < V14.1.0.13), Teamcenter Visualization V14.2 (All versions < V14.2.0.10), Teamcenter Visualization V14.3 (All versions < V14.3.0.7), Teamcenter Visualization V2312 (All versions < V2312.0001). The affected applications contain an out
nvd
CVE-2023-33124P3HIGHCVSS 7.8fixed in 14.2.0.3vAll versions < V14.2.0.32023-06-13
CVE-2023-33124 [HIGH] CWE-119 CVE-2023-33124: A vulnerability has been identified in JT2Go (All versions < V14.2.0.3), Teamcenter Visualization V1 A vulnerability has been identified in JT2Go (All versions < V14.2.0.3), Teamcenter Visualization V13.2 (All versions < V13.2.0.13), Teamcenter Visualization V13.3 (All versions < V13.3.0.10), Teamcenter Visualization V14.0 (All versions < V14.0.0.6), Teamcenter Visualization V14.1 (All versions < V14.1.0.8), Teamcenter Visualization V14.2 (All versio
nvd
CVE-2024-37997P3HIGHCVSS 7.8fixed in V2406.00032024-07-09
CVE-2024-37997 [HIGH] CWE-121 CVE-2024-37997: A vulnerability has been identified in JT Open (All versions < V11.5), JT2Go (All versions < V2406.0 A vulnerability has been identified in JT Open (All versions < V11.5), JT2Go (All versions < V2406.0003), PLM XML SDK (All versions < V7.1.0.014), Teamcenter Visualization V14.2 (All versions < V14.2.0.13), Teamcenter Visualization V14.3 (All versions < V14.3.0.11), Teamcenter Visualization V2312 (All versions < V2312.0008), Teamcenter Visualization V
nvd
CVE-2021-25178P3HIGHCVSS 7.8fixed in 13.1.0.12021-01-18
CVE-2021-25178 [HIGH] CWE-787 CVE-2021-25178: An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A stack-based buffer ov An issue was discovered in Open Design Alliance Drawings SDK before 2021.11. A stack-based buffer overflow vulnerability exists when the recover operation is run with malformed .DXF and .DWG files. This can allow attackers to cause a crash potentially enabling a denial of service attack (Crash, Exit, or Restart) or possible code execution.
nvd
CVE-2021-32936P3HIGHCVSS 7.8fixed in 13.2.0.12021-06-17
CVE-2021-32936 [HIGH] CWE-787 CVE-2021-32936: An out-of-bounds write issue exists in the DXF file-recovering procedure in the Drawings SDK (All ve An out-of-bounds write issue exists in the DXF file-recovering procedure in the Drawings SDK (All versions prior to 2022.4) resulting from the lack of proper validation of user-supplied data. This can result in a write past the end of an allocated buffer and allow attackers to cause a denial-of-service condition or execute code in the context of the c
nvd
CVE-2021-32948P3HIGHCVSS 7.8fixed in 13.2.0.12021-06-17
CVE-2021-32948 [HIGH] CWE-787 CVE-2021-32948: An out-of-bounds write issue exists in the DWG file-reading procedure in the Drawings SDK (All versi An out-of-bounds write issue exists in the DWG file-reading procedure in the Drawings SDK (All versions prior to 2022.4) resulting from the lack of proper validation of user-supplied data. This can result in a write past the end of an allocated buffer and allow attackers to cause a denial-of-service condition or execute code in the context of the curr
nvd
CVE-2021-34323P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34323 [HIGH] CWE-787 CVE-2021-34323: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The Jt981.dll library in affected applications lacks proper validation of user-supplied data when parsing JT files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage this vul
nvd
CVE-2021-34311P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34311 [HIGH] CWE-787 CVE-2021-34311: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The Mono_loader.dll library in affected applications lacks proper validation of user-supplied data when parsing J2K files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage t
nvd
CVE-2021-34293P3HIGHCVSS 7.8fixed in 13.2.0vAll versions < V13.22021-07-13
CVE-2021-34293 [HIGH] CWE-787 CVE-2021-34293: A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All v A vulnerability has been identified in JT2Go (All versions < V13.2), Teamcenter Visualization (All versions < V13.2). The Gif_loader.dll library in affected applications lacks proper validation of user-supplied data when parsing GIF files. This could result in an out of bounds write past the end of an allocated structure. An attacker could leverage th
nvd
Siemens Jt2Go vulnerabilities | cvebase