Unknown
CVE-2023-28830
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2023-28830
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
A vulnerability has been identified in JT2Go (All versions < V14.2.0.5), Solid Edge SE2022 (All versions < V222.0 Update 13), Solid Edge SE2023 (All versions < V223.0 Update 4), Teamcenter Visualization V13.2 (All versions < V13.2.0.15), Teamcenter Visualization V13.3 (All versions < V13.3.0.11), Teamcenter Visualization V14.1 (All versions < V14.1.0.11), Teamcenter Visualization V14.2 (All versions < V14.2.0.5). The affected application contains a use-after-free vulnerability that could be triggered while parsing specially crafted ASM file. An attacker could leverage this vulnerability to execute code in the context of the current process.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- jt2go,
- solid edge se2022 -,
- solid edge se2022 maintenance pack 1,
- solid edge se2022 maintenance pack 10,
- solid edge se2022 maintenance pack 11,
- solid edge se2022 maintenance pack 12,
- solid edge se2022 maintenance pack 2,
- solid edge se2022 maintenance pack 3,
- solid edge se2022 maintenance pack 4,
- solid edge se2022 maintenance pack 5,
- solid edge se2022 maintenance pack 7,
- solid edge se2022 maintenance pack 8,
- solid edge se2022 maintenance pack 9,
- solid edge se2023 -,
- solid edge se2023 update 0001,
- solid edge se2023 update 0002,
- solid edge se2023 update 0003,
- teamcenter visualization
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: