VDB

CVE-2024-54095

CVE-2024-54095 PUBLISHED CVSS 7.800000190734863 HIGH

A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 10). The affected application is vulnerable to integer underflow vulnerability which can be triggered while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.

EPSS 0.13% · 33.0th percentile

Risk Scores

CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.13%
33.0th percentile

Affected Products

VendorProductVersions
siemenssolid_edge_se2024224.0, 224.0, 0
SiemensSolid Edge SE20240

Timeline

  • Dec 10, 2024 CVE Published
  • Dec 10, 2024 PoC Published
  • Dec 11, 2024 EPSS Score
  • Dec 12, 2024 PoC Published
  • Dec 28, 2024 EPSS Score
  • Jan 13, 2025 EPSS Score
  • Jan 30, 2025 EPSS Score
  • Feb 16, 2025 EPSS Score
  • Mar 5, 2025 EPSS Score
  • Mar 5, 2025 Coalition ESS Score
  • Mar 21, 2025 EPSS Score
  • Apr 7, 2025 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›