CVE-2023-39549
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Aug 8, 2023
Updated: Aug 15, 2023
CWE ID 416
Summary
CVE-2023-39549 is a newly discovered vulnerability affecting Solid Edge SE2023 versions prior to V223.0 Update 2. This issue involves a use-after-free condition found during DWG file parsing. An attacker can exploit this vulnerability by supplying specially crafted DWG files, leading to potential code execution in the context of the affected process. The Zero Day Initiative (ZDI) has assigned it the identifier ZDI-CAN-19562.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share
Affected Vendors
- Siemens AG