CVE-2024-24923

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Feb 13, 2024
CWE ID 125

Summary

CVE-2024-24924 is a newly discovered vulnerability affecting Simcenter Femap versions below V2306.0000. The issue stems from an out-of-bounds write vulnerability, which occurs when parsing a specially crafted CATIA MODEL file. This flaw allows an attacker to write data past the allocated buffer, potentially leading to code execution in the context of the current process. (ZDI-CAN-22059) This vulnerability poses a significant risk, as successful exploitation could grant attackers unrestricted access to the compromised system.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share