CVE-2023-2141: Unsafe .NET object deserialization affecting DELMIA Apriso Release 2017 through Release 2022
Published Apr 21, 2023
·Updated
An unsafe .NET object deserialization in DELMIA Apriso Release 2017 through Release 2022 could lead to post-authentication remote code execution.
Affected Software
1 affected component
3DS Delmia Apriso>=2017<=2022
Event History
Apr 21, 2023
CVE Published
via MITRE·03:48 PM
Data Sourced
via MITRE·03:48 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-2141.
2
What is the title of the vulnerability?
The title of the vulnerability is 'An unsafe .NET object deserialization in DELMIA Apriso Release 2017 through Release 2022 could lead ...'
3
What is the severity of CVE-2023-2141?
The severity of CVE-2023-2141 is high with a severity value of 8.8.
4
What software versions are affected by CVE-2023-2141?
DELMIA Apriso Release 2017 through Release 2022 are affected by CVE-2023-2141.
5
How does CVE-2023-2141 exploit work?
CVE-2023-2141 exploits an unsafe .NET object deserialization vulnerability in DELMIA Apriso, which could lead to post-authentication remote code execution.