VDB
CVE-2024-54091
CVE-2024-54091
PUBLISHED
CVSS 7.800000190734863 HIGH
A vulnerability has been identified in Parasolid V36.1 (All versions < V36.1.225), Parasolid V37.0 (All versions < V37.0.173), Parasolid V37.1 (All versions < V37.1.109). The affected applications contain an out of bounds write vulnerability when parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.
EPSS 0.17% · 37.8th percentile
Risk Scores
CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.17%
37.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| siemens | solid_edge_se2024 | 224.0, 224.0, 224.0 |
| siemens | parasolid | 37.0, 36.1 |
| Siemens | Solid Edge SE2025 | 0 |
| Siemens | Solid Edge SE2024 | 0 |
| siemens | solid_edge_se2025 | 225.0, 225.0, 225.0 |
Exploit Intelligence
- CIRCL seen: CVE-2024-54091 (circl-sighting)
- CIRCL seen: CVE-2024-54091 (circl-sighting)
- CIRCL seen: CVE-2024-54091 (circl-sighting)
- https://cert-portal.siemens.com/productcert/html/ssa-979056.html (circl)
- https://cert-portal.siemens.com/productcert/html/ssa-672923.html (circl)
Timeline
- Dec 10, 2024 CVE Published
- Dec 10, 2024 PoC Published
- Dec 11, 2024 EPSS Score
- Dec 12, 2024 PoC Published
- Dec 28, 2024 EPSS Score
- Jan 13, 2025 EPSS Score
- Jan 30, 2025 EPSS Score
- Feb 16, 2025 EPSS Score
- Mar 5, 2025 EPSS Score
- Mar 21, 2025 EPSS Score
- Apr 5, 2025 Coalition ESS Score
- Apr 7, 2025 EPSS Score