First published: Thu Oct 15 2020(Updated: )
SAP 3D Visual Enterprise Viewer, version - 9, allows a user to open manipulated Jupiter Tessallation(.jt) file received from untrusted sources which results in crashing of the application and becoming temporarily unavailable until the user restarts the application, this is caused due to Improper Input Validation.
Credit: cna@sap.com
Affected Software | Affected Version | How to fix |
---|---|---|
SAP 3D Visual Enterprise Viewer | =9 | |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-6374 is classified as medium as it causes application crashes when opening manipulated files.
To fix CVE-2020-6374, ensure that you only open .jt files from trusted sources and update to the latest version of SAP 3D Visual Enterprise Viewer if available.
CVE-2020-6374 affects version 9 of SAP 3D Visual Enterprise Viewer.
CVE-2020-6374 is a denial of service vulnerability that affects application stability.
Yes, CVE-2020-6374 can potentially be exploited remotely if a user opens a maliciously crafted .jt file from an untrusted source.