First published: Mon Feb 22 2016(Updated: )
Multiple use-after-free vulnerabilities in SAP 3D Visual Enterprise Viewer allow remote attackers to execute arbitrary code via a crafted SketchUp document. NOTE: the primary affected product may be SketchUp.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SAP 3D Visual Enterprise Viewer | ||
Trimble SketchUp Pro |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-2536 is classified with a high severity due to its potential to allow remote code execution.
To fix CVE-2016-2536, update SAP 3D Visual Enterprise Viewer and Google SketchUp to the latest version that addresses this vulnerability.
CVE-2016-2536 affects users of SAP 3D Visual Enterprise Viewer and Google SketchUp who open malicious SketchUp documents.
CVE-2016-2536 is a use-after-free vulnerability that can lead to arbitrary code execution.
Yes, CVE-2016-2536 can be exploited remotely by attackers through crafted SketchUp documents.