Siemens Solid Edge Se2021 vulnerabilities
33 known vulnerabilities affecting siemens/solid_edge_se2021.
Total CVEs
33
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH28MEDIUM2LOW3
Vulnerabilities
Page 2 of 2
CVE-2021-37180P3HIGHCVSS 7.8vAll Versions < SE2021MP72021-08-10
CVE-2021-37180 [HIGH] CWE-824 CVE-2021-37180: A vulnerability has been identified in Solid Edge SE2021 (All Versions < SE2021MP7). The PSKERNEL.dl
A vulnerability has been identified in Solid Edge SE2021 (All Versions < SE2021MP7). The PSKERNEL.dll library lacks proper validation while parsing user-supplied OBJ files that could cause an out of bounds access to an uninitialized pointer. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-1
nvd
CVE-2021-41539P3HIGHCVSS 7.8vAll versions < SE2021MP82021-09-28
CVE-2021-41539 [HIGH] CWE-416 CVE-2021-41539: A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected ap
A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a use-after-free vulnerability while parsing OBJ files. An attacker could leverage this vulnerability to execute code in the context of the current process (ZDI-CAN-13773).
nvd
CVE-2021-41537P3HIGHCVSS 7.8vAll versions < SE2021MP82021-09-28
CVE-2021-41537 [HIGH] CWE-416 CVE-2021-41537: A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected ap
A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a use-after-free vulnerability while parsing OBJ files. An attacker could leverage this vulnerability to execute code in the context of the current process (ZDI-CAN-13789).
nvd
CVE-2021-41540P3HIGHCVSS 7.8vAll versions < SE2021MP82021-09-28
CVE-2021-41540 [HIGH] CWE-416 CVE-2021-41540: A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected ap
A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a use-after-free vulnerability while parsing OBJ files. An attacker could leverage this vulnerability to execute code in the context of the current process (ZDI-CAN-13776).
nvd
CVE-2021-41536P3HIGHCVSS 7.8vAll versions < SE2021MP82021-09-28
CVE-2021-41536 [HIGH] CWE-416 CVE-2021-41536: A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected ap
A vulnerability has been identified in Solid Edge SE2021 (All versions < SE2021MP8). The affected application contains a use-after-free vulnerability while parsing OBJ files. An attacker could leverage this vulnerability to execute code in the context of the current process (ZDI-CAN-13778).
nvd
CVE-2021-27381P3HIGHCVSS 7.8vAll Versions < SE2021MP32021-03-15
CVE-2021-27381 [HIGH] CWE-125 CVE-2021-27381: A vulnerability has been identified in Solid Edge SE2020 (All Versions < SE2020MP13), Solid Edge SE2
A vulnerability has been identified in Solid Edge SE2020 (All Versions < SE2020MP13), Solid Edge SE2021 (All Versions < SE2021MP3). Affected applications lack proper validation of user-supplied data when parsing PAR files. This could result in an out of bounds read past the end of an allocated structure. An attacker could leverage this vulnerability t
nvd
CVE-2021-37202P3HIGHCVSS 7.8vAll versions < SE2021MP82021-09-14
CVE-2021-37202 [HIGH] CWE-416 CVE-2021-37202: A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The IFC adapter in affected application contains a use-after-free vulnerability that could be triggered while parsing user-supplied IFC files. An attacker could leverage this vulnerability to execute code in the context of the cu
nvd
CVE-2021-37178P4MEDIUMCVSS 5.5vAll Versions < SE2021MP72021-08-10
CVE-2021-37178 [MEDIUM] CWE-611 CVE-2021-37178: A vulnerability has been identified in Solid Edge SE2021 (All Versions < SE2021MP7). An XML external
A vulnerability has been identified in Solid Edge SE2021 (All Versions < SE2021MP7). An XML external entity injection vulnerability in the underlying XML parser could cause the affected application to disclose arbitrary files to remote attackers by loading a specially crafted xml file.
nvd
CVE-2020-28387P4MEDIUMCVSS 5.5vAll Versions < SE2021MP32021-03-15
CVE-2020-28387 [MEDIUM] CWE-611 CVE-2020-28387: A vulnerability has been identified in Solid Edge SE2020 (All Versions < SE2020MP13), Solid Edge SE2
A vulnerability has been identified in Solid Edge SE2020 (All Versions < SE2020MP13), Solid Edge SE2021 (All Versions < SE2021MP3). When opening a specially crafted SEECTCXML file, the application could disclose arbitrary files to remote attackers. This is because of the passing of specially crafted content to the underlying XML parser without takin
nvd
CVE-2021-37203P4HIGHCVSS 7.1vAll versions < SE2021MP82021-09-14
CVE-2021-37203 [HIGH] CWE-125 CVE-2021-37203: A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The plmxmlAdapterIFC.dll contains an out-of-bounds read while parsing user supplied IFC files which could result in a read past the end of an allocated buffer. This could allow an attacker to cause a denial-of-service condition o
nvd
CVE-2021-41538P4LOWCVSS 3.3vAll versions < SE2021MP82021-09-28
CVE-2021-41538 [LOW] CWE-824 CVE-2021-41538: A vulnerability has been identified in NX 1953 Series (All versions < V1973.3700), NX 1980 Series (A
A vulnerability has been identified in NX 1953 Series (All versions < V1973.3700), NX 1980 Series (All versions < V1988), Solid Edge SE2021 (All versions < SE2021MP8). The affected application is vulnerable to information disclosure by unexpected access to an uninitialized pointer while parsing user-supplied OBJ files. An attacker could leverage this v
nvd
CVE-2021-41533P4LOWCVSS 3.3vAll versions < SE2021MP82021-09-28
CVE-2021-41533 [LOW] CWE-125 CVE-2021-41533: A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The affected application is vulnerable to an out of bounds read past the end of an allocated buffer when parsing JT files. An attacker could leverage this vulnerability to leak information in the context of the current process (ZD
nvd
CVE-2021-41534P4LOWCVSS 3.3vAll versions < SE2021MP82021-09-28
CVE-2021-41534 [LOW] CWE-125 CVE-2021-41534: A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All
A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The affected application is vulnerable to an out of bounds read past the end of an allocated buffer when parsing JT files. An attacker could leverage this vulnerability to leak information in the context of the current process (ZD
nvd
← Previous2 / 2