CVE Database
/

CVE-2020-28394

Back to search

CVE-2020-28394

Published: Feb 9, 2021

Modified: Aug 4, 2024

PUBLISHED

Description

A vulnerability has been identified in JT2Go (All versions < V13.1.0.1), Teamcenter Visualization (All versions < V13.1.0.1). Affected applications lack proper validation of user-supplied data when parsing of RAS files. This could result in a memory access past the end of an allocated buffer. An attacker could leverage this vulnerability to access data in the context of the current process. (ZDI-CAN-12283)

VendorProductVersions

Siemens

JT2Go

affected
All versions < V13.1.0.1

Siemens

Teamcenter Visualization

affected
All versions < V13.1.0.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now