CVE-2023-24552: Siemens Solid Edge SE2022
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
A vulnerability has been identified in Solid Edge SE2022 (All versions < V222.0MP12), Solid Edge SE2023 (All versions < V223.0Update2). The affected application contains an out of bounds read past the end of an allocated buffer while parsing a specially crafted PAR file. This could allow an attacker to to execute code in the context of the current process.
Affected products
- Siemens Solid Edge SE2022: affected versions not specified; version maintenance_pack_1 only; version maintenance_pack_2 only; version maintenance_pack_3 only; version maintenance_pack_4 only; version maintenance_pack_5 only; …
- Siemens Solid Edge SE2023: before 2210.0002.004 (fixed in 2210.0002.004)
Published 2023-02-14. Last modified 2026-06-17.