CVE-2024-45471
CVSS 3.1 Score 7.8 of 10 (high)
Details
Summary
CVE-2024-45471 is a recently discovered vulnerability affecting Teamcenter Visualization V14.2, V14.3, and V2312, as well as Tecnomatix Plant Simulation V2302 and V2404. These applications contain an out-of-bounds write vulnerability, which can be triggered when parsing a maliciously crafted WRL file. This issue allows an attacker to write unintended data beyond the allocated memory, potentially resulting in code execution with the same privileges as the current process. To mitigate this risk, it is recommended to upgrade to the affected software's latest patched versions: V14.2.0.14, V14.3.0.12, V2312.0008, V2302.0016, and V2404.0005.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Siemens AG