siemens nx-1980 CVE-2021-37202 vulnerability in Siemens Products
Published on September 14, 2021

A vulnerability has been identified in NX 1980 Series (All versions < V1984), Solid Edge SE2021 (All versions < SE2021MP8). The IFC adapter in affected application contains a use-after-free vulnerability that could be triggered while parsing user-supplied IFC files. An attacker could leverage this vulnerability to execute code in the context of the current process.

NVD

Weakness Type

What is a Dangling pointer Vulnerability?

Referencing memory after it has been freed can cause a program to crash, use unexpected values, or execute code.

CVE-2021-37202 has been classified to as a Dangling pointer vulnerability or weakness.


Products Associated with CVE-2021-37202

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2021-37202 are published in these products:

 
 

Affected Versions

Siemens NX 1980 Series: Siemens Solid Edge SE2021:

Exploit Probability

EPSS
0.45%
Percentile
63.15%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.