CVE-2024-23797: High severity Siemens Tecnomatix Plant Simulation vulnerability
A vulnerability has been identified in Tecnomatix Plant Simulation V2201 (All versions < V2201.0012), Tecnomatix Plant Simulation V2302 (All versions < V2302.0006). The affected applications contain a stack overflow vulnerability while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-23797?
CVE-2024-23797 is considered a high severity vulnerability due to its potential to cause a stack overflow.
How do I fix CVE-2024-23797?
To mitigate CVE-2024-23797, update Tecnomatix Plant Simulation to version V2201.0012 or later for V2201, and version V2302.0006 or later for V2302.
Which versions of Tecnomatix Plant Simulation are affected by CVE-2024-23797?
CVE-2024-23797 affects Tecnomatix Plant Simulation versions earlier than V2201.0012 and V2302.0006.
What type of vulnerability is CVE-2024-23797?
CVE-2024-23797 is a stack overflow vulnerability that occurs when parsing specially crafted WRL files.
Can CVE-2024-23797 be exploited remotely?
Yes, CVE-2024-23797 can potentially be exploited remotely by an attacker through malicious WRL files.