CVE-2024-45466
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Oct 8, 2024
Updated: Dec 10, 2024
CWE ID 125
Summary
CVE-2024-45466 is a newly identified vulnerability that affects various versions of Teamcenter Visualization (V14.2, V14.3, and V2312), as well as Tecnomatix Plant Simulation (V2302 and V2404). The issue lies in the handling of WRL files, where an out-of-bounds read occurs, enabling an attacker to access memory beyond the allocated structure. By supplying specially crafted WRL files, a malicious actor can potentially execute code in the context of the current process.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Siemens AG