CVE-2024-27907

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 12, 2024
CWE ID 787

Summary

CVE-2024-27907 is a newly identified vulnerability that affects all versions of Simcenter Femap prior to V2306.0000. This issue arises due to an out-of-bounds write vulnerability during the application's parsing of a specially crafted Catia MODEL file. An attacker can exploit this vulnerability to execute arbitrary code in the context of the current process. (ZDI-CAN-22051) This bug poses a significant risk, as successful exploitation could lead to serious consequences, including data theft or system compromise. It is strongly recommended that users of Simcenter Femap update to the latest version as soon as possible to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share