Siemens Tecnomatix Plant Simulation vulnerabilities

87 known vulnerabilities affecting siemens/tecnomatix_plant_simulation.

Total CVEs
87
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1HIGH80MEDIUM6

Vulnerabilities

Page 3 of 5
CVE-2024-23796HIGHCVSS 7.8fixed in 2201.0012≥ 2302.0, < 2302.00062024-02-13
CVE-2024-23796 [HIGH] CWE-122 CVE-2024-23796: A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012) A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012), Tecnomatix Plant Simulation V2302 (All versions < V2302.0006). The affected application is vulnerable to heap-based buffer overflow while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current p
nvd
CVE-2024-23803HIGHCVSS 7.8≥ 2302.0, < 2302.0007v2201.02024-02-13
CVE-2024-23803 [HIGH] CWE-787 CVE-2024-23803: A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions), Tecnomatix A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions), Tecnomatix Plant Simulation V2302 (All versions < V2302.0007). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of th
nvd
CVE-2024-23802HIGHCVSS 7.8fixed in 2201.0012≥ 2302.0, < 2302.00062024-02-13
CVE-2024-23802 [HIGH] CWE-125 CVE-2024-23802: A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012) A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012), Tecnomatix Plant Simulation V2302 (All versions < V2302.0006). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted SPP files. This could allow an attacker to execute code in th
nvd
CVE-2024-23798HIGHCVSS 7.8fixed in 2201.0012≥ 2302.0, < 2302.00062024-02-13
CVE-2024-23798 [HIGH] CWE-121 CVE-2024-23798: A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012) A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012), Tecnomatix Plant Simulation V2302 (All versions < V2302.0006). The affected applications contain a stack overflow vulnerability while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current proce
nvd
CVE-2024-23795HIGHCVSS 7.8fixed in 2201.0012≥ 2302.0, < 2302.00062024-02-13
CVE-2024-23795 [HIGH] CWE-787 CVE-2024-23795: A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012) A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012), Tecnomatix Plant Simulation V2302 (All versions < V2302.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted WRL file. This could allow an attacker to execute code in the
nvd
CVE-2024-23797HIGHCVSS 7.8fixed in 2201.0012≥ 2302.0, < 2302.00062024-02-13
CVE-2024-23797 [HIGH] CWE-121 CVE-2024-23797: A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012) A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012), Tecnomatix Plant Simulation V2302 (All versions < V2302.0006). The affected applications contain a stack overflow vulnerability while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current proce
nvd
CVE-2024-23801MEDIUMCVSS 5.5≥ 2302.0, < 2302.0007v2201.02024-02-13
CVE-2024-23801 [MEDIUM] CWE-476 CVE-2024-23801: A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions), Tecnomatix A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions), Tecnomatix Plant Simulation V2302 (All versions < V2302.0007). The affected applications contain a null pointer dereference vulnerability while parsing specially crafted SPP files. An attacker could leverage this vulnerability to crash the application causing den
nvd
CVE-2024-23799MEDIUMCVSS 5.5≥ 2302.0, < 2302.0007v2201.02024-02-13
CVE-2024-23799 [MEDIUM] CWE-476 CVE-2024-23799: A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions), Tecnomatix A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions), Tecnomatix Plant Simulation V2302 (All versions < V2302.0007). The affected applications contain a null pointer dereference vulnerability while parsing specially crafted SPP files. An attacker could leverage this vulnerability to crash the application causing den
nvd
CVE-2024-23800MEDIUMCVSS 5.5≥ 2302.0, < 2302.0007v2201.02024-02-13
CVE-2024-23800 [MEDIUM] CWE-476 CVE-2024-23800: A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions), Tecnomatix A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions), Tecnomatix Plant Simulation V2302 (All versions < V2302.0007). The affected applications contain a null pointer dereference vulnerability while parsing specially crafted SPP files. An attacker could leverage this vulnerability to crash the application causing den
nvd
CVE-2023-38075HIGHCVSS 7.8≥ 2201.0, < 2201.0010≥ 2302.0, < 2302.00042023-09-12
CVE-2023-38075 [HIGH] CWE-416 CVE-2023-38075: A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V1 A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0
nvd
CVE-2023-38076HIGHCVSS 7.8≥ 2201.0, < 2201.0010≥ 2302.0, < 2302.00042023-09-12
CVE-2023-38076 [HIGH] CWE-122 CVE-2023-38076: A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V1 A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0
nvd
CVE-2023-38073HIGHCVSS 7.8≥ 2201.0, < 2201.0010≥ 2302.0, < 2302.00042023-09-12
CVE-2023-38073 [HIGH] CWE-843 CVE-2023-38073: A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V1 A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0
nvd
CVE-2023-38070HIGHCVSS 7.8≥ 2201.0, < 2201.0010≥ 2302.0, ≤ 2302.00042023-09-12
CVE-2023-38070 [HIGH] CWE-121 CVE-2023-38070: A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V1 A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0
nvd
CVE-2023-38072HIGHCVSS 7.8≥ 2201.0, < 2201.0010≥ 2302.0, < 2302.00042023-09-12
CVE-2023-38072 [HIGH] CWE-787 CVE-2023-38072: A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V1 A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0
nvd
CVE-2023-38071HIGHCVSS 7.8≥ 2021.0, < 2201.0010≥ 2302.0, < 2302.00042023-09-12
CVE-2023-38071 [HIGH] CWE-122 CVE-2023-38071: A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V1 A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0
nvd
CVE-2023-38074HIGHCVSS 7.8≥ 2201.0, < 2201.0010≥ 2302.0, < 2302.00042023-09-12
CVE-2023-38074 [HIGH] CWE-843 CVE-2023-38074: A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V1 A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0
nvd
CVE-2023-27403HIGHCVSS 7.8fixed in 2201.0006vAll versions < V2201.00062023-03-14
CVE-2023-27403 [HIGH] CWE-119 CVE-2023-27403: A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains a memory corruption vulnerability while parsing specially crafted SPP files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-20303, ZDI-CAN-20348)
cvelistv5nvd
CVE-2023-27402HIGHCVSS 7.8fixed in 2201.0006vAll versions < V2201.00062023-03-14
CVE-2023-27402 [HIGH] CWE-125 CVE-2023-27402: A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted SPP files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-20334)
cvelistv5nvd
CVE-2023-27400HIGHCVSS 7.8fixed in 2201.0006vAll versions < V2201.00062023-03-14
CVE-2023-27400 [HIGH] CWE-787 CVE-2023-27400: A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted SPP file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-20300)
cvelistv5nvd
CVE-2023-27406HIGHCVSS 7.8fixed in 2201.0006vAll versions < V2201.00062023-03-14
CVE-2023-27406 [HIGH] CWE-121 CVE-2023-27406: A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The A vulnerability has been identified in Tecnomatix Plant Simulation (All versions < V2201.0006). The affected application is vulnerable to stack-based buffer while parsing specially crafted SPP files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-20449)
cvelistv5nvd