CVE-2024-45471

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Oct 8, 2024
Updated: Dec 10, 2024
CWE ID 787

Summary

CVE-2024-45471 is a recently discovered vulnerability affecting Teamcenter Visualization V14.2, V14.3, and V2312, as well as Tecnomatix Plant Simulation V2302 and V2404. These applications contain an out-of-bounds write vulnerability, which can be triggered when parsing a maliciously crafted WRL file. This issue allows an attacker to write unintended data beyond the allocated memory, potentially resulting in code execution with the same privileges as the current process. To mitigate this risk, it is recommended to upgrade to the affected software's latest patched versions: V14.2.0.14, V14.3.0.12, V2312.0008, V2302.0016, and V2404.0005.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share