CVE-2023-51746: High severity siemens jt2go vulnerability
A vulnerability has been identified in JT2Go (All versions < V14.3.0.6), Teamcenter Visualization V13.3 (All versions < V13.3.0.13), Teamcenter Visualization V14.1 (All versions < V14.1.0.12), Teamcenter Visualization V14.2 (All versions < V14.2.0.9), Teamcenter Visualization V14.3 (All versions < V14.3.0.6). The affected applications contain a stack overflow vulnerability while parsing specially crafted CGM files. This could allow an attacker to execute code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-51746?
CVE-2023-51746 is considered a critical vulnerability due to its potential impact on the confidentiality, integrity, and availability of affected Siemens software.
How do I fix CVE-2023-51746?
To fix CVE-2023-51746, users should update their JT2Go and Teamcenter Visualization software to the latest versions as specified by Siemens.
Which versions are affected by CVE-2023-51746?
CVE-2023-51746 affects all versions of JT2Go prior to V14.3.0.6 and various versions of Teamcenter Visualization before their respective fixed releases.
What is the impact of exploiting CVE-2023-51746?
Exploiting CVE-2023-51746 could allow an attacker to execute arbitrary code on the affected systems, leading to severe security breaches.
Is there a workaround for CVE-2023-51746?
Currently, Siemens has not provided any recommended workarounds for CVE-2023-51746, so upgrading to the latest software version is advised.