First published: Wed Sep 09 2020(Updated: )
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated SKP file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP 3D Visual Enterprise Viewer | =9 | |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-6329 has been classified as a medium severity vulnerability due to its potential to disrupt application availability.
To fix CVE-2020-6329, update SAP 3D Visual Enterprise Viewer to the latest version provided by SAP that addresses this vulnerability.
The impact of CVE-2020-6329 is that the application can crash when opening manipulated SKP files, leading to temporary unavailability.
CVE-2020-6329 specifically affects version 9 of SAP 3D Visual Enterprise Viewer.
Yes, untrusted SKP files can cause SAP 3D Visual Enterprise Viewer to crash, making it advisable to avoid opening such files.