6.8
CVSSv2

CVE-2021-22645

Published: 23/02/2021 Updated: 23/03/2021
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Luxion KeyShot versions before 10.1, Luxion KeyShot Viewer versions before 10.1, Luxion KeyShot Network Rendering versions before 10.1, and Luxion KeyVR versions before 10.1 are vulnerable to an attack because the .bip documents display a “load” command, which can be pointed to a .dll from a remote network share. As a result, the .dll entry point can be executed without sufficient UI warning.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

luxion keyshot network rendering

luxion keyvr

luxion keyshot viewer

luxion keyshot

siemens solid edge se2020 firmware

siemens solid edge se2021 firmware