
CVE-2024-24923 – Siemens Simcenter Femap MODEL File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-24923
13 Feb 2024 — A vulnerability has been identified in Simcenter Femap (All versions < V2401.0000), Simcenter Femap (All versions < V2306.0001). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted Catia MODEL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-22055) Se ha identificado una vulnerabilidad en Simcenter Femap (Todas las versiones < V2401.0000), Simcenter Femap (Todas las versiones <... • https://cert-portal.siemens.com/productcert/html/ssa-000072.html • CWE-125: Out-of-bounds Read •

CVE-2024-24922 – Siemens Simcenter Femap MODEL File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-24922
13 Feb 2024 — A vulnerability has been identified in Simcenter Femap (All versions < V2401.0000). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted Catia MODEL file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21715) Se ha identificado una vulnerabilidad en Simcenter Femap (Todas las versiones < V2401.0000). La aplicación afectada contiene una escritura fuera de los límites más allá del final d... • https://cert-portal.siemens.com/productcert/html/ssa-000072.html • CWE-787: Out-of-bounds Write •

CVE-2024-24921 – Siemens Simcenter Femap MODEL File Parsing Memory Corruption Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-24921
13 Feb 2024 — A vulnerability has been identified in Simcenter Femap (All versions < V2401.0000). The affected application is vulnerable to memory corruption while parsing specially crafted Catia MODEL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21712) Se ha identificado una vulnerabilidad en Simcenter Femap (Todas las versiones < V2401.0000). La aplicación afectada es vulnerable a la corrupción de la memoria al analizar archivos Catia MODEL especialmente manipul... • https://cert-portal.siemens.com/productcert/html/ssa-000072.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2024-24920 – Siemens Simcenter Femap MODEL File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-24920
13 Feb 2024 — A vulnerability has been identified in Simcenter Femap (All versions < V2401.0000). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted Catia MODEL file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21710) Se ha identificado una vulnerabilidad en Simcenter Femap (Todas las versiones < V2401.0000). La aplicación afectada contiene una escritura fuera de los límites más allá del final d... • https://cert-portal.siemens.com/productcert/html/ssa-000072.html • CWE-787: Out-of-bounds Write •

CVE-2023-41033 – Siemens Simcenter Femap X_T File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2023-41033
12 Sep 2023 — A vulnerability has been identified in Parasolid V35.0 (All versions < V35.0.260), Parasolid V35.1 (All versions < V35.1.246), Parasolid V36.0 (All versions < V36.0.156), Simcenter Femap V2301 (All versions < V2301.0003), Simcenter Femap V2306 (All versions < V2306.0001). The affected application contains an out of bounds write past the end of an allocated structure while parsing specially crafted X_T files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21266) ... • https://cert-portal.siemens.com/productcert/pdf/ssa-190839.pdf • CWE-787: Out-of-bounds Write •

CVE-2023-41032 – Siemens Simcenter Femap X_T File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2023-41032
12 Sep 2023 — A vulnerability has been identified in Parasolid V34.1 (All versions < V34.1.258), Parasolid V35.0 (All versions < V35.0.253), Parasolid V35.1 (All versions < V35.1.184), Parasolid V36.0 (All versions < V36.0.142), Simcenter Femap V2301 (All versions < V2301.0003), Simcenter Femap V2306 (All versions < V2306.0001). The affected application contains an out of bounds write past the end of an allocated structure while parsing specially crafted X_T files. This could allow an attacker to execute code in the cont... • https://cert-portal.siemens.com/productcert/pdf/ssa-190839.pdf • CWE-787: Out-of-bounds Write •

CVE-2022-41851 – Siemens Simcenter Femap JT File Parsing Uninitialized Pointer Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2022-41851
11 Oct 2022 — A vulnerability has been identified in JTTK (All versions < V11.1.1.0), Simcenter Femap V2022.1 (All versions < V2022.1.3), Simcenter Femap V2022.2 (All versions < V2022.2.2). The JTTK library is vulnerable to an uninitialized pointer reference vulnerability while parsing specially crafted JT files. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-16973) Se ha identificado una vulnerabilidad en JTTK (Todas las versiones anteriores a V11.1.1.0), Si... • https://cert-portal.siemens.com/productcert/pdf/ssa-611756.pdf • CWE-824: Access of Uninitialized Pointer •

CVE-2022-39156 – Siemens Simcenter Femap X_T File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2022-39156
13 Sep 2022 — A vulnerability has been identified in Parasolid V33.1 (All versions < V33.1.262), Parasolid V33.1 (All versions >= V33.1.262 < V33.1.263), Parasolid V34.0 (All versions < V34.0.252), Parasolid V34.1 (All versions < V34.1.242), Parasolid V35.0 (All versions < V35.0.161), Parasolid V35.0 (All versions >= V35.0.161 < V35.0.164), Simcenter Femap V2022.1 (All versions < V2022.1.3), Simcenter Femap V2022.2 (All versions < V2022.2.2). The affected application is vulnerable to out of bounds read past the end of an... • https://cert-portal.siemens.com/productcert/pdf/ssa-518824.pdf • CWE-125: Out-of-bounds Read •

CVE-2022-39154 – Siemens Simcenter Femap X_T File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2022-39154
13 Sep 2022 — A vulnerability has been identified in Parasolid V33.1 (All versions < V33.1.262), Parasolid V33.1 (All versions >= V33.1.262 < V33.1.263), Parasolid V34.0 (All versions < V34.0.252), Parasolid V34.1 (All versions < V34.1.242), Parasolid V35.0 (All versions < V35.0.161), Parasolid V35.0 (All versions >= V35.0.161 < V35.0.164), Simcenter Femap V2022.1 (All versions < V2022.1.3), Simcenter Femap V2022.2 (All versions < V2022.2.2). The affected application contains an out of bounds write past the end of an all... • https://cert-portal.siemens.com/productcert/pdf/ssa-518824.pdf • CWE-787: Out-of-bounds Write •

CVE-2022-39155 – Siemens Simcenter Femap X_T File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2022-39155
13 Sep 2022 — A vulnerability has been identified in Parasolid V33.1 (All versions < V33.1.262), Parasolid V33.1 (All versions >= V33.1.262 < V33.1.263), Parasolid V34.0 (All versions < V34.0.252), Parasolid V34.1 (All versions < V34.1.242), Parasolid V35.0 (All versions < V35.0.161), Parasolid V35.0 (All versions >= V35.0.161 < V35.0.164), Simcenter Femap V2022.1 (All versions < V2022.1.3), Simcenter Femap V2022.2 (All versions < V2022.2.2). The affected application contains an out of bounds write past the end of an all... • https://cert-portal.siemens.com/productcert/pdf/ssa-518824.pdf • CWE-787: Out-of-bounds Write •