Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2567▼ 298 respecto a la semana anterior
Críticas / altas1351▲ 99 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)62▼ 466 respecto a la semana anterior
–

15 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaAlta (8.8)2.5%—Siemens Solid Edge Se2020 FirmwareSiemens Solid Edge Se2021 Firmware8/6/202117/6/2026
The jutil.dll library in all versions of Solid Edge SE2020 before 2020MP14 and all versions of Solid Edge SE2021 before SE2021MP5 lack proper validation of user-supplied data when parsing DFT files. This could result in an out-of-bounds write past the end of an allocation structure. An attacker could leverage this…
ModificadaAlta (8.8)2.5%—Siemens Solid Edge Se2020 FirmwareSiemens Solid Edge Se2021 Firmware8/6/202117/6/2026
The ugeom2d.dll library in all versions of Solid Edge SE2020 before 2020MP14 and all versions of Solid Edge SE2021 before SE2021MP5 lack proper validation of user-supplied data when parsing DFT files. This could result in an out-of-bounds write past the end of an allocated structure. An attacker could leverage this…
ModificadaAlta (7.8)2.0%—Datakit CrosscadwareLuxion KeyshotSiemens Solid Edge Se2020 FirmwareSiemens Solid Edge Se2021 Firmware27/5/202117/6/2026
Datakit Software libraries CatiaV5_3dRead, CatiaV6_3dRead, Step3dRead, Ug3dReadPsr, Jt3dReadPsr modules in KeyShot Versions v10.1 and prior are vulnerable to an out-of-bounds read, which may allow an attacker to execute arbitrary code.
ModificadaAlta (7.8)2.0%—Datakit CrosscadwareLuxion KeyshotSiemens Solid Edge Se2020 FirmwareSiemens Solid Edge Se2021 Firmware27/5/202117/6/2026
Datakit Software libraries CatiaV5_3dRead, CatiaV6_3dRead, Step3dRead, Ug3dReadPsr, Jt3dReadPsr modules in KeyShot Versions v10.1 and prior lack proper validation of user-supplied data when parsing PRT files. This could lead to pointer dereferences of a value obtained from an untrusted source. An attacker could…
ModificadaAlta (7.8)2.2%—Datakit CrosscadwareLuxion KeyshotSiemens Solid Edge Se2020 FirmwareSiemens Solid Edge Se2021 Firmware27/5/202117/6/2026
Datakit Software libraries CatiaV5_3dRead, CatiaV6_3dRead, Step3dRead, Ug3dReadPsr, Jt3dReadPsr modules in KeyShot Versions v10.1 and prior lack proper validation of user-supplied data when parsing STP files. This could result in a stack-based buffer overflow. An attacker could leverage this vulnerability to execute…
ModificadaMedia (5.5)1.7%—Datakit CrosscadwareLuxion KeyshotSiemens Solid Edge Se2020 FirmwareSiemens Solid Edge Se2021 Firmware27/5/202117/6/2026
When opening a specially crafted 3DXML file, the application containing Datakit Software libraries CatiaV5_3dRead, CatiaV6_3dRead, Step3dRead, Ug3dReadPsr, Jt3dReadPsr modules in KeyShot Versions v10.1 and prior could disclose arbitrary files to remote attackers. This is because of the passing of specially crafted…
ModificadaAlta (7.8)2.0%—Datakit CrosscadwareLuxion KeyshotSiemens Solid Edge Se2020 FirmwareSiemens Solid Edge Se2021 Firmware27/5/202117/6/2026
Datakit Software libraries CatiaV5_3dRead, CatiaV6_3dRead, Step3dRead, Ug3dReadPsr, Jt3dReadPsr modules in KeyShot Versions v10.1 and prior lack proper validation of user-supplied data when parsing CATPart files. This could result in an out-of-bounds write past the end of an allocated structure. An attacker could…
ModificadaAlta (7.8)2.3%—Siemens Solid Edge Se2020Siemens Solid Edge Se202122/4/202117/6/2026
A vulnerability has been identified in Solid Edge SE2020 (All versions < SE2020MP13), Solid Edge SE2020 (All versions < SE2020MP14), Solid Edge SE2021 (All Versions < SE2021MP4). Affected applications lack proper validation of user-supplied data when parsing of PAR files. This could result in a stack based buffer…
ModificadaAlta (7.8)1.4%—Siemens Solid Edge Se2020Siemens Solid Edge Se202122/4/202117/6/2026
A vulnerability has been identified in Solid Edge SE2020 (All versions < SE2020MP13), Solid Edge SE2020 (All versions < SE2020MP14), Solid Edge SE2021 (All Versions < SE2021MP4). Affected applications lack proper validation of user-supplied data when parsing PAR files. This could result in an out of bounds write past…
ModificadaAlta (7.8)1.0%—Siemens Solid Edge Se2020Siemens Solid Edge Se202122/4/202117/6/2026
A vulnerability has been identified in Solid Edge SE2020 (All versions < SE2020MP13), Solid Edge SE2020 (All versions < SE2020MP14), Solid Edge SE2021 (All Versions < SE2021MP4). Affected applications lack proper validation of user-supplied data when parsing PAR files. This could lead to pointer dereferences of a…
ModificadaAlta (7.8)2.9%—Luxion KeyshotLuxion Keyshot Network RenderingLuxion Keyshot ViewerLuxion Keyvr+223/2/202117/6/2026
When loading a specially crafted file, Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering versions prior to 10.1, and Luxion KeyVR versions prior to 10.1 are, while processing the extraction of temporary files, suffering from a directory traversal…
ModificadaAlta (7.8)2.2%—Luxion KeyshotLuxion Keyshot Network RenderingLuxion Keyshot ViewerLuxion Keyvr+223/2/202117/6/2026
Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering versions prior to 10.1, and Luxion KeyVR versions prior to 10.1 have multiple NULL pointer dereference issues while processing project files, which may allow an attacker to execute arbitrary code.
ModificadaAlta (7.8)2.6%—Luxion KeyshotLuxion Keyshot Network RenderingLuxion Keyshot ViewerLuxion Keyvr+223/2/202117/6/2026
Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering versions prior to 10.1, and Luxion KeyVR versions prior to 10.1 are vulnerable to multiple out-of-bounds write issues while processing project files, which may allow an attacker to execute arbitrary…
ModificadaAlta (7.8)1.6%—Luxion KeyshotLuxion Keyshot Network RenderingLuxion Keyshot ViewerLuxion Keyvr+223/2/202117/6/2026
Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering versions prior to 10.1, and Luxion KeyVR versions prior to 10.1 are vulnerable to an attack because the .bip documents display a “load” command, which can be pointed to a .dll from a remote network…
ModificadaAlta (7.8)2.2%—Luxion KeyshotLuxion Keyshot Network RenderingLuxion Keyshot ViewerLuxion Keyvr+223/2/202117/6/2026
Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering versions prior to 10.1, and Luxion KeyVR versions prior to 10.1 are vulnerable to an out-of-bounds read while processing project files, which may allow an attacker to execute arbitrary code.