ZDI-23-202: Siemens Solid Edge Viewer SLDPRT File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Siemens Solid Edge Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-202?
ZDI-23-202 is classified as a critical vulnerability due to its potential for remote code execution.
How do I fix ZDI-23-202?
To fix ZDI-23-202, ensure that you are using the latest version of Siemens Solid Edge Viewer and apply any available security patches.
What are the potential impacts of ZDI-23-202?
Exploitation of ZDI-23-202 can result in unauthorized remote code execution, leading to system compromise and data loss.
What versions of Siemens Solid Edge Viewer are affected by ZDI-23-202?
ZDI-23-202 affects all installations of Siemens Solid Edge Viewer prior to the security update that addresses this vulnerability.
Is user interaction required to exploit ZDI-23-202?
Yes, user interaction is required for ZDI-23-202, as the target must visit a malicious page or open a malicious file.