VDB

CVE-2024-54095

CVE-2024-54095 PUBLISHED CVSS 7.800000190734863 HIGH

A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 10). The affected application is vulnerable to integer underflow vulnerability which can be triggered while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.

EPSS 0.16% · 6.2th percentile

Risk Scores

CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.16%
6.2th percentile

Affected Products

VendorProductVersions
siemenssolid_edge_se2024224.0, 224.0, 0
SiemensSolid Edge SE20240

Timeline

  • Dec 10, 2024 CVE Published
  • Dec 10, 2024 PoC Published
  • Dec 10, 2024 CVE Updated
  • Dec 11, 2024 EPSS Score
  • Dec 12, 2024 PoC Published
  • Dec 28, 2024 EPSS Score
  • Jan 14, 2025 EPSS Score
  • Jan 30, 2025 EPSS Score
  • Feb 16, 2025 EPSS Score
  • Mar 5, 2025 EPSS Score
  • Mar 5, 2025 Coalition ESS Score
  • Mar 22, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›