CVE-2023-30986: Buffer Overflow
A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 3), Solid Edge SE2023 (All versions < V223.0 Update 2). Affected applications contain a memory corruption vulnerability while parsing specially crafted STP files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-19561)
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2023-30986.
What is the affected software?
The affected software is Siemens Solid Edge SE2023 (All versions < V223.0 Update 3) and Siemens Solid Edge SE2023 (All versions < V223.0 Update 2).
What is the severity of CVE-2023-30986?
The severity of CVE-2023-30986 is high with a CVSS score of 7.8.
How does the vulnerability occur?
The vulnerability occurs due to a memory corruption vulnerability while parsing specially crafted STP files.
How can an attacker exploit CVE-2023-30986?
An attacker can exploit CVE-2023-30986 to execute code by providing a specially crafted STP file.