Feb. 15, 2024, 6 a.m. |

ZDI: Published Advisories www.zerodayinitiative.com

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Siemens Tecnomatix Plant Simulation. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.0. The following CVEs are assigned: CVE-2024-23795.

arbitrary code attackers code code execution cvss exploit file malicious out-of-bounds out-of-bounds write page parsing rating remote code remote code execution siemens simulation target vulnerability zdi

More from www.zerodayinitiative.com / ZDI: Published Advisories

Security Engineer II, Engineering

@ Trail of Bits | Worldwide - Remote

Technical Support Engineer - Network Security

@ Ivanti | Bengaluru, India (Bagmane)

Senior Security Analyst- Container Threat and Vulnerability Management

@ Oracle | Philippines

Cybersecurity Strategy & Operations Officer (m/f/d)

@ Nordex Group | Madrid, ES, 28001

Security Administrator

@ ManTech | 201DT - 2251 Corp Park Dr, Herndon, VA

Cybersecurity Specialist

@ GFT Technologies | Sant Cugat del Vallès, B, ES, 08174