CVE-2024-24920
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Feb 13, 2024
CWE ID 787
Summary
CVE-2024-24920 is a newly identified vulnerability that affects all versions of Simcenter Femap prior to V2401.0000. This cybersecurity issue is caused by an out-of-bounds write vulnerability in the application's buffer while parsing a specially crafted Catia MODEL file. By exploiting this weakness, an attacker could potentially execute arbitrary code in the context of the current process, posing a significant risk to system security. The Zero Day Initiative (ZDI) has assigned the identifier ZDI-CAN-21710 to this vulnerability.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.