Podatność CVE-2023-38073


Publikacja: 2023-09-12

Opis:
A vulnerability has been identified in JT2Go (All versions < V14.3.0.1), Teamcenter Visualization V13.3 (All versions < V13.3.0.12), Teamcenter Visualization V14.0 (All versions), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.6), Teamcenter Visualization V14.3 (All versions < V14.3.0.1). The affected application contains a type confusion vulnerability while parsing WRL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-20826)

Typ:

CWE-843

(Access of Resource Using Incompatible Type ('Type Confusion'))

 Referencje:
https://cert-portal.siemens.com/productcert/pdf/ssa-278349.pdf

Copyright 2024, cxsecurity.com

 

Back to Top