ZDI-CAN-19424: ZDI-23-203: Siemens Solid Edge Viewer SLDPRT File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Siemens Solid Edge Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-19424?
The severity of ZDI-CAN-19424 is rated as moderate due to the requirement of user interaction for exploitation.
How do I fix ZDI-CAN-19424?
To fix ZDI-CAN-19424, ensure that you install the latest security updates for Siemens Solid Edge Viewer and avoid opening untrusted files or visiting suspicious websites.
What types of attacks can be performed using ZDI-CAN-19424?
ZDI-CAN-19424 can be exploited to disclose sensitive information by luring users to open malicious files or visit compromised web pages.
Who is affected by ZDI-CAN-19424?
Any user of Siemens Solid Edge Viewer may be affected by ZDI-CAN-19424 if they interact with malicious content.
Is user interaction required to exploit ZDI-CAN-19424?
Yes, user interaction is required to exploit ZDI-CAN-19424, as the victim must visit a malicious page or open a malicious file.