Vulnerability Details CVE-2023-33122
A vulnerability has been identified in JT2Go (All versions < V14.2.0.3), Teamcenter Visualization V13.2 (All versions < V13.2.0.13), Teamcenter Visualization V13.3 (All versions < V13.3.0.10), Teamcenter Visualization V14.0 (All versions < V14.0.0.6), Teamcenter Visualization V14.1 (All versions < V14.1.0.8), Teamcenter Visualization V14.2 (All versions < V14.2.0.3). The affected applications contain an out of bounds read past the end of an allocated buffer while parsing a specially crafted CGM file. This vulnerability could allow an attacker to disclose sensitive information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 26.8%
CVSS Severity
CVSS v3 Score 3.3
Products affected by CVE-2023-33122
-
cpe:2.3:a:siemens:jt2go:-
-
cpe:2.3:a:siemens:jt2go:13.1.0
-
cpe:2.3:a:siemens:jt2go:13.1.0.1
-
cpe:2.3:a:siemens:jt2go:13.1.0.2
-
cpe:2.3:a:siemens:jt2go:13.1.0.3
-
cpe:2.3:a:siemens:jt2go:13.2.0
-
cpe:2.3:a:siemens:jt2go:13.2.0.1
-
cpe:2.3:a:siemens:jt2go:13.2.0.2
-
cpe:2.3:a:siemens:jt2go:13.3.0.5
-
cpe:2.3:a:siemens:jt2go:14.1.0.5
-
cpe:2.3:a:siemens:teamcenter_visualization:13.2.0
-
cpe:2.3:a:siemens:teamcenter_visualization:13.2.0.1
-
cpe:2.3:a:siemens:teamcenter_visualization:13.2.0.12
-
cpe:2.3:a:siemens:teamcenter_visualization:13.2.0.2
-
cpe:2.3:a:siemens:teamcenter_visualization:13.3.0
-
cpe:2.3:a:siemens:teamcenter_visualization:13.3.0.1
-
cpe:2.3:a:siemens:teamcenter_visualization:13.3.0.5
-
cpe:2.3:a:siemens:teamcenter_visualization:13.3.0.8
-
cpe:2.3:a:siemens:teamcenter_visualization:14.0
-
cpe:2.3:a:siemens:teamcenter_visualization:14.0.0
-
cpe:2.3:a:siemens:teamcenter_visualization:14.0.0.2
-
cpe:2.3:a:siemens:teamcenter_visualization:14.0.0.4
-
cpe:2.3:a:siemens:teamcenter_visualization:14.1
-
cpe:2.3:a:siemens:teamcenter_visualization:14.1.0.5
-
cpe:2.3:a:siemens:teamcenter_visualization:14.1.0.6
-
cpe:2.3:a:siemens:teamcenter_visualization:14.2