A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0002). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted PAR file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21155)
References
Link | Resource |
---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-764801.pdf | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: siemens
Published: 2023-07-11T09:07:25.432Z
Updated: 2023-09-12T09:32:09.541Z
Reserved: 2023-06-29T13:25:52.761Z
Link: CVE-2023-37248
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-07-11T10:15:11.680
Modified: 2023-07-18T15:03:03.557
Link: CVE-2023-37248
JSON object: View
Redhat Information
No data.
CWE