Luxion KeyShot versions before 10.1, Luxion KeyShot Viewer versions before 10.1, Luxion KeyShot Network Rendering versions before 10.1, and Luxion KeyVR versions before 10.1 are vulnerable to an attack because the .bip documents display a “load” command, which can be pointed to a .dll from a remote network share. As a result, the .dll entry point can be executed without sufficient UI warning.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
luxion keyshot network rendering |
||
luxion keyvr |
||
luxion keyshot viewer |
||
luxion keyshot |
||
siemens solid edge se2020 firmware |
||
siemens solid edge se2021 firmware |