CVE-2024-45474
CVSS 3.1 Score 7.8 of 10 (high)
Details
Published Oct 8, 2024
Updated: Dec 10, 2024
CWE ID 119
Summary
CVE-2024-45474 is a memory corruption vulnerability affecting Teamcenter Visualization versions V14.2, V14.3, and V2312, as well as Tecnomatix Plant Simulation versions V2302 and V2404. All versions prior to V14.2.0.14, V14.3.0.12, V2312.0008, V2302.0016, and V2404.0005 are vulnerable. This issue arises when the application parses specially crafted WRL files, leading to memory corruption. An attacker could potentially exploit this vulnerability in combination with other weaknesses to gain code execution privileges within the current process.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Siemens AG