Unrated severityNVD Advisory· Published Jun 8, 2021· Updated Aug 3, 2024
CVE-2021-27399
CVE-2021-27399
Description
A vulnerability has been identified in Simcenter Femap 2020.2 (All versions < V2020.2.MP3), Simcenter Femap 2021.1 (All versions < V2021.1.MP3). The femap.exe application lacks proper validation of user-supplied data when parsing FEMAP files. This could result in an out of bounds write past the end of an allocated structure, a different vulnerability than CVE-2021-27387. An attacker could leverage this vulnerability to execute code in the context of the current process. (ZDI-CAN-12820)
Affected products
2All versions < V2020.2.MP3+ 1 more
- (no CPE)range: All versions < V2020.2.MP3
- (no CPE)range: All versions < V2021.1.MP3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- cert-portal.siemens.com/productcert/pdf/ssa-133038.pdfmitrex_refsource_MISC
- www.zerodayinitiative.com/advisories/ZDI-21-781/mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.