Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Use-After-Free vulnerability in SLDPRT file reading procedure affecting SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023
Vulnerability Description
A Use-After-Free vulnerability in SLDPRT file reading procedure exists in SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023. This vulnerability could allow an attacker to execute arbitrary code while opening a specially crafted SLDPRT file.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Vulnerability Type
释放后使用
Vulnerability Title
SolidWorks 资源管理错误漏洞
Vulnerability Description
SolidWorks是SolidWorks公司的一个运行在微软Windows平台下的三维CAD软件。 SolidWorks 2021版本至2023版本存在安全漏洞,该漏洞源于存在文件读取过程中的释放后重用漏洞,可能允许攻击者在打开特制SLDPRT文件时执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A