ZDI-23-1024: Siemens Solid Edge Viewer OBJ File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Siemens Solid Edge Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-1024?
The severity of ZDI-23-1024 is considered to be moderate due to the requirement of user interaction for exploitation.
How do I fix ZDI-23-1024?
To fix ZDI-23-1024, ensure that you update to the latest version of Siemens Solid Edge Viewer as recommended by the vendor.
What type of attack does ZDI-23-1024 involve?
ZDI-23-1024 involves remote attackers disclosing sensitive information by tricking users into visiting a malicious page or opening a malicious file.
Is user interaction required for ZDI-23-1024 exploitation?
Yes, user interaction is required for ZDI-23-1024 exploitation as the target must engage with malicious content.
What products are affected by ZDI-23-1024?
ZDI-23-1024 affects installations of Siemens Solid Edge Viewer.