ZDI-CAN-19429: ZDI-23-1022: Siemens Solid Edge Viewer IFC File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
Published Aug 4, 2023
·Updated
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Siemens Solid Edge Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
1 affected component
Siemens Solid Edge Viewer
Event History
Aug 4, 2023
Advisory Published
05:00 AM
Data Sourced
05:00 AM
Description
Frequently Asked Questions
1
What is the severity of ZDI-CAN-19429?
ZDI-CAN-19429 has a high severity rating due to its potential for remote code execution.
2
How do I fix ZDI-CAN-19429?
To fix ZDI-CAN-19429, users should update Siemens Solid Edge Viewer to the latest version provided by Siemens.
3
What type of vulnerability is ZDI-CAN-19429?
ZDI-CAN-19429 is a remote code execution vulnerability that requires user interaction to exploit.
4
Who is affected by ZDI-CAN-19429?
Users of Siemens Solid Edge Viewer are affected by the ZDI-CAN-19429 vulnerability.
5
What is required to exploit ZDI-CAN-19429?
Exploitation of ZDI-CAN-19429 requires the target to visit a malicious web page or open a malicious file.