CVE-2023-39181: High severity solid edge se2025 vulnerability
Published Aug 8, 2023
·Updated
A vulnerability has been identified in Solid Edge SE2023 (All versions < V223.0 Update 7). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted PAR file. This could allow an attacker to execute code in the context of the current process.
Affected Software
8 affected components
Siemens Solid Edge<se2023
Siemens Solid Edge=se2023
Siemens Solid Edge=se2023-maintenance_pack1
Siemens Solid Edge=se2023-maintenance_pack2
Siemens Solid Edge=se2023-maintenance_pack3
Siemens Solid Edge=se2023-maintenance_pack4
Siemens Solid Edge=se2023-maintenance_pack5
Siemens Solid Edge=se2023-maintenance_pack6
Event History
Aug 8, 2023
CVE Published
via MITRE·09:20 AM
Data Sourced
via MITRE·09:20 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2023-39181.
2
What is the affected software?
The affected software is Siemens Solid Edge SE2023 (All versions < V223.0 Update 7).
3
What is the severity of CVE-2023-39181?
The severity of CVE-2023-39181 is high with a CVSS score of 7.8.
4
What is the impact of this vulnerability?
This vulnerability allows an attacker to execute code in the context of the current user.
5
Is there a fix available for CVE-2023-39181?
Yes, the fix for CVE-2023-39181 is included in the V223.0 Update 7 of Siemens Solid Edge SE2023.