CVE-2022-35901: Low severity bentley microstation vulnerability
An issue was discovered in Bentley MicroStation before 10.17.0.x and Bentley View before 10.17.0.x. Using an affected version of MicroStation or MicroStation-based application to open a J2K file containing crafted data can force an out-of-bounds read. Exploitation of these vulnerabilities within the parsing of J2K files could enable an attacker to read information in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2022-35901.
What is the severity of CVE-2022-35901?
CVE-2022-35901 has a severity level of low (3.3).
Which software versions are affected by CVE-2022-35901?
MicroStation versions before 10.17.0.x and Bentley View versions before 10.17.0.x are affected by CVE-2022-35901.
What is the CWE ID associated with CVE-2022-35901?
The CWE ID associated with CVE-2022-35901 is CWE-125.
How can I exploit CVE-2022-35901?
We do not provide instructions or support for exploiting vulnerabilities. It's important to follow responsible disclosure practices and report vulnerabilities to the appropriate vendor or organization.