VDB

CVE-2024-54091

CVE-2024-54091 PUBLISHED CVSS 7.800000190734863 HIGH

A vulnerability has been identified in Parasolid V36.1 (All versions < V36.1.225), Parasolid V37.0 (All versions < V37.0.173), Parasolid V37.1 (All versions < V37.1.109). The affected applications contain an out of bounds write vulnerability when parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.

EPSS 0.17% · 37.8th percentile

Risk Scores

CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.17%
37.8th percentile

Affected Products

VendorProductVersions
siemenssolid_edge_se2024224.0, 224.0, 224.0
siemensparasolid37.0, 36.1
SiemensSolid Edge SE20250
SiemensSolid Edge SE20240
siemenssolid_edge_se2025225.0, 225.0, 225.0

Timeline

  • Dec 10, 2024 CVE Published
  • Dec 10, 2024 PoC Published
  • Dec 11, 2024 EPSS Score
  • Dec 12, 2024 PoC Published
  • Dec 28, 2024 EPSS Score
  • Jan 13, 2025 EPSS Score
  • Jan 30, 2025 EPSS Score
  • Feb 16, 2025 EPSS Score
  • Mar 5, 2025 EPSS Score
  • Mar 21, 2025 EPSS Score
  • Apr 5, 2025 Coalition ESS Score
  • Apr 7, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›