CVE-2023-39549

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Aug 8, 2023
Updated: Aug 15, 2023
CWE ID 416

Summary

CVE-2023-39549 is a newly discovered vulnerability affecting Solid Edge SE2023 versions prior to V223.0 Update 2. This issue involves a use-after-free condition found during DWG file parsing. An attacker can exploit this vulnerability by supplying specially crafted DWG files, leading to potential code execution in the context of the affected process. The Zero Day Initiative (ZDI) has assigned it the identifier ZDI-CAN-19562.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share