ZDI-CAN-19562: ZDI-23-1115: Siemens Solid Edge Viewer DWG File Parsing Use-After-Free Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Siemens Solid Edge Viewer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-19562?
ZDI-CAN-19562 is classified as having a moderate severity due to its potential for disclosing sensitive information.
How do I fix ZDI-CAN-19562?
To fix ZDI-CAN-19562, ensure you are using the latest version of Siemens Solid Edge Viewer that addresses this vulnerability.
Who is affected by ZDI-CAN-19562?
ZDI-CAN-19562 affects installations of Siemens Solid Edge Viewer that are susceptible to remote information disclosure.
What types of attacks can exploit ZDI-CAN-19562?
ZDI-CAN-19562 can be exploited through user interaction with a malicious web page or by opening a malicious file.
How can I mitigate the risks associated with ZDI-CAN-19562?
Mitigation of ZDI-CAN-19562 involves educating users to avoid clicking on untrusted links and keeping the software updated.