Vulnerability index

Browse CVEs

60 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 5.4 CVE-2024-12092 A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x allows an attacker… 3dexperience Enovia Mitigation only Fix from $1,6002024-12-16 MEDIUM 5.4 CVE-2024-6380 A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Relea… 3dexperience Enovia Mitigation only Fix from $1,6002024-10-16 MEDIUM 5.4 CVE-2024-7736 A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Relea… 3dexperience Enovia Mitigation only Fix from $1,6002024-09-19 MEDIUM 5.4 CVE-2024-7932 A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbi… 3dexperience Mitigation only Fix from $1,6002024-09-02 MEDIUM 5.4 CVE-2024-7938 A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R20… 3dexperience Mitigation only Fix from $1,6002024-09-02 MEDIUM 5.4 CVE-2024-7939 A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary… 3dexperience Mitigation only Fix from $1,6002024-09-02 MEDIUM 5.4 CVE-2024-8004 A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release … 3dexperience Enovia Mitigation only Fix from $1,6002024-09-02 MEDIUM 6.1 CVE-2024-6379 A reflected Cross-site Scripting (XSS) vulnerability affecting 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows a… 3dexperience Mitigation only Fix from $1,6002024-08-20 MEDIUM 5.4 CVE-2024-6378 A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Relea… 3dexperience Mitigation only Fix from $1,6002024-08-20 MEDIUM 6.1 CVE-2024-6377 An URL redirection to untrusted site (open redirect) vulnerability affecting 3DPassport in 3DSwymer from Release 3DEXPERIENCE R2022x through Release … 3dexperience Mitigation only Fix from $1,6002024-08-20 HIGH 7.8 CVE-2024-1847 Heap-based Buffer Overflow, Memory Corruption, Out-Of-Bounds Read, Out-Of-Bounds Write, Stack-based Buffer Overflow, Type Confusion, Uninitialized Va… Solidworks 2024+ Fix from $1,9502024-02-28 HIGH 7.5 CVE-2024-0935 Insertion of Sensitive Information into Log File vulnerabilities are affecting DELMIA Apriso Release 2019 through Release 2024 Delmia Apriso after 2024 Fix from $1,9502024-02-01 CRITICAL 9.8 CVE-2023-6078 An OS Command Injection vulnerability exists in BIOVIA Materials Studio products from Release BIOVIA 2021 through Release BIOVIA 2023. Upload of a sp… Biovia Materials Studio after 2023 Fix from $2,3002024-02-01 HIGH 7.5 CVE-2023-3589 A Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x could allow wit… Teamwork Cloud No Magic Release Mitigation only Fix from $1,9502023-10-09 MEDIUM 5.4 CVE-2023-3588 A stored Cross-site Scripting (XSS) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x allows an attac… Teamwork Cloud No Magic Release Mitigation only Fix from $1,6002023-09-13 HIGH 8.8 CVE-2023-1997 An OS Command Injection vulnerability exists in SIMULIA 3DOrchestrate from Release 3DEXPERIENCE R2021x through Release 3DEXPERIENCE R2023x. A special… 3dexperience Mitigation only Fix from $1,9502023-08-28 HIGH 7.8 CVE-2023-2763 Use-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading procedure in SOLIDWORKS Desk… 3dexperience Solidworks after 2023 Fix from $1,9502023-07-12 HIGH 7.8 CVE-2023-2762 A Use-After-Free vulnerability in SLDPRT file reading procedure exists in SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS … 3dexperience Solidworks after 2023 Fix from $1,9502023-07-12 MEDIUM 6.1 CVE-2023-1996 A reflected Cross-site Scripting (XSS) vulnerability in Release 3DEXPERIENCE R2018x through Release 3DEXPERIENCE R2023x allows an attacker to execute… 3dexperience Mitigation only Fix from $1,6002023-05-19 HIGH 8.8 CVE-2023-2141 An unsafe .NET object deserialization in DELMIA Apriso Release 2017 through Release 2022 could lead to post-authentication remote code execution. Delmia Apriso after 2022 Fix from $1,9502023-04-21 HIGH 7.5 CVE-2023-2140 A Server-Side Request Forgery vulnerability in DELMIA Apriso Release 2017 through Release 2022 could allow an unauthenticated attacker to issue re… Delmia Apriso after 2022 Fix from $1,9502023-04-21 MEDIUM 6.1 CVE-2023-2139 A reflected Cross-site Scripting (XSS) Vulnerability in DELMIA Apriso Release 2017 through Release 2022 allows an attacker to execute arbitrary scrip… Delmia Apriso Mitigation only Fix from $1,6002023-04-21 CRITICAL 9.8 CVE-2023-1287 An XSL template vulnerability in ENOVIA Live Collaboration V6R2013xE allows Remote Code Execution. Enovia Live Collaboration No fix yet Fix from $2,3002023-03-09 HIGH 7.5 CVE-2023-1288 An XML External Entity injection (XXE) vulnerability in ENOVIA Live Collaboration V6R2013xE allows an attacker to read local files on the server. Enovia Live Collaboration Mitigation only Fix from $1,9502023-03-09 HIGH 7.8 CVE-2020-25507 An incorrect permission assignment during the installation script of TeamworkCloud 18.0 thru 19.0 allows a local unprivileged attacker to execute arb… Teamwork Cloud after 19.0 Fix from $1,9502020-12-28 CRITICAL 9.8 CVE-2014-2072EPSS 7% Dassault Systemes Catia V5-6R2013: Stack Buffer Overflow due to inadequate boundary checks Catia No fix yet Fix from $2,3002020-01-08 CRITICAL 9.8 CVE-2014-2073 Stack-based buffer overflow in Dassault Systemes CATIA V5-6R2013 allows remote attackers to execute arbitrary code via a crafted packet, related to "… Catia No fix yet Fix from $2,3002018-04-10 HIGH 7.5 CVE-2013-4721 SQL injection vulnerability in the RSS feed from records extension 1.0.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL comma… Push2rss 3ds after 1.0.0 Fix from $1,9502013-06-27 MEDIUM 6.9 CVE-2012-4882 Multiple untrusted search path vulnerabilities in 3D XML Player 6.212.13.12076 allow local users to gain privileges via a Trojan horse (1) dwmapi.dll… 3d Xml Player Mitigation only Fix from $1,6002012-09-07 MEDIUM 6.9 CVE-2012-4883 Multiple untrusted search path vulnerabilities in 3DVIA Composer V6R2012 HF1 Build 6.8.1.1652 allow local users to gain privileges via a Trojan horse… 3dvia Composer Mitigation only Fix from $1,6002012-09-07