CVE-2024-54095: A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 10). The affected application is vulnerable to integer...

7.8 CVSS

Description

A vulnerability has been identified in Solid Edge SE2024 (All versions < V224.0 Update 10). The affected application is vulnerable to integer underflow vulnerability which can be triggered while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process.

Classification

CVE ID: CVE-2024-54095

CVSS Base Severity: HIGH

CVSS Base Score: 7.8

Affected Products

Vendor: Siemens

Product: Solid Edge SE2024

Exploit Prediction Scoring System (EPSS)

EPSS Score: 0.05% (probability of being exploited)

EPSS Percentile: 24.23% (scored less or equal to compared to others)

EPSS Date: 2025-02-03 (when was this score calculated)

References

https://cert-portal.siemens.com/productcert/html/ssa-730188.html

Timeline