CVE-2022-40201: Bentley Microstation Connect

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to a Stack-Based Buffer Overflow when a malformed design (DGN) file is parsed. This may allow an attacker to execute arbitrary code.

Affected products

  • Bentley Microstation Connect: up to and including 10.17.0.209

Published 2023-01-06. Last modified 2026-06-17.