VDB
CVE-2024-54095
CVE-2024-54095
PUBLISHED
CVSS 7.800000190734863 HIGH
A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 10). The affected application is vulnerable to integer underflow vulnerability which can be triggered while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.
EPSS 0.16% · 6.2th percentile
Risk Scores
CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.16%
6.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| siemens | solid_edge_se2024 | 224.0, 224.0, 0 |
| Siemens | Solid Edge SE2024 | 0 |
Timeline
- Dec 10, 2024 CVE Published
- Dec 10, 2024 PoC Published
- Dec 10, 2024 CVE Updated
- Dec 11, 2024 EPSS Score
- Dec 12, 2024 PoC Published
- Dec 28, 2024 EPSS Score
- Jan 14, 2025 EPSS Score
- Jan 30, 2025 EPSS Score
- Feb 16, 2025 EPSS Score
- Mar 5, 2025 EPSS Score
- Mar 5, 2025 Coalition ESS Score
- Mar 22, 2025 EPSS Score