Siemens Solid Edge vulnerabilities
56 known vulnerabilities affecting siemens/solid_edge.
Total CVEs
56
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH52MEDIUM1LOW3
Vulnerabilities
Page 2 of 3
CVE-2023-39185HIGHCVSS 7.8fixed in se2023vse20232023-08-08
CVE-2023-39185 [HIGH] CWE-125 CVE-2023-39185: A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 7). The affec
A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 7). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.
nvd
CVE-2023-39188HIGHCVSS 7.8fixed in se2023vse20232023-08-08
CVE-2023-39188 [HIGH] CWE-125 CVE-2023-39188: A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 7). The affec
A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 7). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted DFT files. This could allow an attacker to execute code in the context of the current process.
nvd
CVE-2023-25140HIGHCVSS 7.8vse20222023-02-14
CVE-2023-25140 [HIGH] CWE-125 CVE-2023-25140: A vulnerability has been identified in Parasolid V34.0 (All versions < V34.0.254), Parasolid V34.1 (
A vulnerability has been identified in Parasolid V34.0 (All versions < V34.0.254), Parasolid V34.1 (All versions < V34.1.242), Parasolid V35.0 (All versions < V35.0.170), Parasolid V35.1 (All versions < V35.1.150), Solid Edge SE2022 (All versions < V222.0MP12). The affected applications contain an out of bounds read past the end of an allocated struct
nvd
CVE-2022-47935HIGHCVSS 7.8fixed in se2023vAll versions < V20232023-01-10
CVE-2022-47935 [HIGH] CWE-119 CVE-2022-47935: A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All version
A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All versions < V13.1.1.0), Solid Edge (All versions < V2023). The Jt1001.dll contains a memory corruption vulnerability while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of the current process. (
cvelistv5nvd
CVE-2022-47967HIGHCVSS 7.8fixed in se2023vse2023+1 more2023-01-10
CVE-2022-47967 [HIGH] CWE-119 CVE-2022-47967: A vulnerability has been identified in Solid Edge (All versions < V2023 MP1). The DOCMGMT.DLL contai
A vulnerability has been identified in Solid Edge (All versions < V2023 MP1). The DOCMGMT.DLL contains a memory corruption vulnerability that could be triggered while parsing files in different file formats such as PAR, ASM, DFT. This could allow an attacker to execute code in the context of the current process.
cvelistv5nvd
CVE-2022-37864HIGHCVSS 7.8vse2020vAll Versions < SE2022MP92022-10-11
CVE-2022-37864 [HIGH] CWE-122 CVE-2022-37864: A vulnerability has been identified in Solid Edge (All Versions < SE2022MP9). The affected applicati
A vulnerability has been identified in Solid Edge (All Versions < SE2022MP9). The affected application contains an out of bounds write past the fixed-length heap-based buffer while parsing specially crafted DWG files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-17627)
cvelistv5nvd
CVE-2021-44016HIGHCVSS 7.8vse2021vse20222022-02-09
CVE-2021-44016 [HIGH] CWE-119 CVE-2021-44016: A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All vers
A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All versions < SE2021MP9), Solid Edge SE2022 (All versions < SE2022MP1), Teamcenter Visualization V13.1 (All versions < V13.1.0.9), Teamcenter Visualization V13.2 (All versions < V13.2.0.7), Teamcenter Visualization V13.3 (All versions < V13.3.0.1). The plmxmlA
nvd
CVE-2021-44018HIGHCVSS 7.8vse2021vse20222022-02-09
CVE-2021-44018 [HIGH] CWE-125 CVE-2021-44018: A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All vers
A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All versions < SE2021MP9), Solid Edge SE2022 (All versions < SE2022MP1), Teamcenter Visualization V13.1 (All versions < V13.1.0.9), Teamcenter Visualization V13.2 (All versions < V13.2.0.7), Teamcenter Visualization V13.3 (All versions < V13.3.0.1). The plmxmlA
nvd
CVE-2021-44000HIGHCVSS 7.8vse2021vse20222022-02-09
CVE-2021-44000 [HIGH] CWE-122 CVE-2021-44000: A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All vers
A vulnerability has been identified in JT2Go (All versions < V13.2.0.7), Solid Edge SE2021 (All versions < SE2021MP9), Solid Edge SE2022 (All versions < SE2022MP1), Teamcenter Visualization V13.1 (All versions < V13.1.0.9), Teamcenter Visualization V13.2 (All versions < V13.2.0.7), Teamcenter Visualization V13.3 (All versions < V13.3.0.1). The plmxmlA
nvd
CVE-2021-44014HIGHCVSS 7.8fixed in se2023vAll versions < V20232021-12-14
CVE-2021-44014 [HIGH] CWE-416 CVE-2021-44014: A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All version
A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All versions < V13.1.1.0), Solid Edge (All versions < V2023). The Jt1001.dll contains a use-after-free vulnerability that could be triggered while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of t
cvelistv5nvd
CVE-2021-44002HIGHCVSS 7.8fixed in se2023vAll versions < V20232021-12-14
CVE-2021-44002 [HIGH] CWE-787 CVE-2021-44002: A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All version
A vulnerability has been identified in JT Open (All versions < V11.1.1.0), JT Utilities (All versions < V13.1.1.0), Solid Edge (All versions < V2023). The Jt1001.dll contains an out of bounds write past the end of an allocated structure while parsing specially crafted JT files. This could allow an attacker to execute code in the context of the current
cvelistv5nvd
CVE-2021-43336HIGHCVSS 7.8vse20222021-11-14
CVE-2021-43336 [HIGH] CWE-787 CVE-2021-43336: An Out-of-Bounds Write vulnerability exists when reading a DXF or DWG file using Open Design Allianc
An Out-of-Bounds Write vulnerability exists when reading a DXF or DWG file using Open Design Alliance Drawings SDK before 2022.11. The specific issue exists within the parsing of DXF and DWG files. Crafted data in a DXF or DWG file (an invalid number of properties) can trigger a write operation past the end of an allocated buffer. An attacker can leve
nvd
CVE-2021-41537HIGHCVSS 7.8fixed in se2021vse20212021-09-28
CVE-2021-41537 [HIGH] CWE-416 CVE-2021-41537: A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected ap
A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a use-after-free vulnerability while parsing OBJ files. An attacker could leverage this vulnerability to execute code in the context of the current process (ZDI-CAN-13789).
nvd
CVE-2021-41539HIGHCVSS 7.8fixed in se2021vse20212021-09-28
CVE-2021-41539 [HIGH] CWE-416 CVE-2021-41539: A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected ap
A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a use-after-free vulnerability while parsing OBJ files. An attacker could leverage this vulnerability to execute code in the context of the current process (ZDI-CAN-13773).
nvd
CVE-2021-41540HIGHCVSS 7.8fixed in se2021vse20212021-09-28
CVE-2021-41540 [HIGH] CWE-416 CVE-2021-41540: A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected ap
A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a use-after-free vulnerability while parsing OBJ files. An attacker could leverage this vulnerability to execute code in the context of the current process (ZDI-CAN-13776).
nvd
CVE-2021-41535HIGHCVSS 7.8fixed in se2021vse20212021-09-28
CVE-2021-41535 [HIGH] CWE-416 CVE-2021-41535: A vulnerability has been identified in NX 1953 Series (All versions < V1973.3700), NX 1980 Series (A
A vulnerability has been identified in NX 1953 Series (All versions < V1973.3700), NX 1980 Series (All versions < V1988), Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a use-after-free vulnerability while parsing OBJ files. An attacker could leverage this vulnerability to execute code in the context of the current pro
nvd
CVE-2021-41536HIGHCVSS 7.8fixed in se2021vse20212021-09-28
CVE-2021-41536 [HIGH] CWE-416 CVE-2021-41536: A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected ap
A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a use-after-free vulnerability while parsing OBJ files. An attacker could leverage this vulnerability to execute code in the context of the current process (ZDI-CAN-13778).
nvd
CVE-2021-41538LOWCVSS 3.3fixed in se2021vse20212021-09-28
CVE-2021-41538 [LOW] CWE-824 CVE-2021-41538: A vulnerability has been identified in NX 1953 Series (All versions < V1973.3700), NX 1980 Series (A
A vulnerability has been identified in NX 1953 Series (All versions < V1973.3700), NX 1980 Series (All versions < V1988), Solid Edge SE2021 (All versions < SE2021MP8). The affected application is vulnerable to information disclosure by unexpected access to an uninitialized pointer while parsing user-supplied OBJ files. An attacker could leverage this v
nvd
CVE-2021-41533LOWCVSS 3.3fixed in se2021vse20212021-09-28
CVE-2021-41533 [LOW] CWE-125 CVE-2021-41533: A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The affected application is vulnerable to an out of bounds read past the end of an allocated buffer when parsing JT files. An attacker could leverage this vulnerability to leak information in the context of the current process (ZD
nvd
CVE-2021-41534LOWCVSS 3.3fixed in se2021vse20212021-09-28
CVE-2021-41534 [LOW] CWE-125 CVE-2021-41534: A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The affected application is vulnerable to an out of bounds read past the end of an allocated buffer when parsing JT files. An attacker could leverage this vulnerability to leak information in the context of the current process (ZD
nvd