Dassault Systèmes 3DEXPERIENCE是法国达索系统(Dassault Systèmes)公司的一种业务与创新平台。 Dassault Systèmes 3DEXPERIENCE R2022x至3DEXPERIENCE R2024x版本存在安全漏洞,该漏洞源于容易受到反射型跨站脚本攻击,允许攻击者在用户的浏览器会话中执行任意脚本代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Dassault Systèmes | ENOVIA Collaborative Industry Innovator | Release 3DEXPERIENCE R2022x Golden ~ Release 3DEXPERIENCE R2022x.FP.CFA.2424 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2024-6377 | 8.1 HIGH | URL redirection to untrusted site (open redirect) vulnerability affecting 3DPassport in 3D |
| CVE-2024-6379 | 7.7 HIGH | Reflected Cross-site Scripting (XSS) vulnerability affecting 3DSwymer from Release 3DEXPER |
No comments yet