CVE-2022-32243: Input Validation
When a user opens manipulated Scalable Vector Graphics (.svg, svg.x3d) files received from untrusted sources in SAP 3D Visual Enterprise Viewer, the application crashes and becomes temporarily unavailable to the user until restart of the application.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2022-32243.
What is the severity of CVE-2022-32243?
The severity of CVE-2022-32243 is medium with a CVSS score of 5.5.
What software is affected by CVE-2022-32243?
SAP 3D Visual Enterprise Viewer version up to 9.0 is affected by CVE-2022-32243.
What is the impact of CVE-2022-32243?
When a user opens manipulated Scalable Vector Graphics (.svg, .svg.x3d) files from untrusted sources in SAP 3D Visual Enterprise Viewer, the application crashes and becomes temporarily unavailable until the application is restarted.
How can I fix CVE-2022-32243?
To fix CVE-2022-32243, it is recommended to update SAP 3D Visual Enterprise Viewer to a version that includes the necessary security patches.