ZDI-23-207: Siemens Solid Edge Viewer DWG File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Siemens Solid Edge Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-207?
The severity of ZDI-23-207 is critical due to the potential for remote code execution.
How do I fix ZDI-23-207?
To fix ZDI-23-207, update to the latest version of Siemens Solid Edge Viewer as provided by Siemens.
Who is affected by ZDI-23-207?
ZDI-23-207 affects users of Siemens Solid Edge Viewer who are exposed to malicious pages or files.
What is the impact of ZDI-23-207?
The impact of ZDI-23-207 is the ability for remote attackers to execute arbitrary code on the affected systems.
Is user interaction required to exploit ZDI-23-207?
Yes, user interaction is required for ZDI-23-207 as the target must visit a malicious page or open a malicious file.