CVE-2024-45466

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Oct 8, 2024
Updated: Dec 10, 2024
CWE ID 125

Summary

CVE-2024-45466 is a newly identified vulnerability that affects various versions of Teamcenter Visualization (V14.2, V14.3, and V2312), as well as Tecnomatix Plant Simulation (V2302 and V2404). The issue lies in the handling of WRL files, where an out-of-bounds read occurs, enabling an attacker to access memory beyond the allocated structure. By supplying specially crafted WRL files, a malicious actor can potentially execute code in the context of the current process.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share