CVE-2021-22647
CVE-2021-22647
Vexday Risk Score
3Baixo
Decisão SSVC (CISA)
Track
Sem sinal de exploração → monitorar
CVSS —EPSS 2.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
23 fev 2021Publicada no NVD
Recomendação: Monitorar — sem sinal de exploração no momento.
Luxion KeyShot versions prior to 10.1, Luxion KeyShot Viewer versions prior to 10.1, Luxion KeyShot Network Rendering versions prior to 10.1, and Luxion KeyVR versions prior to 10.1 are vulnerable to multiple out-of-bounds write issues while processing project files, which may allow an attacker to execute arbitrary code.
Produtos afetados
n/a · Luxion KeyShotn/a · Luxion KeyShot Network Renderingn/a · Luxion KeyShot Viewern/a · Luxion KeyVRQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
https://cert-portal.siemens.com/productcert/pdf/ssa-231216.pdfhttps://us-cert.cisa.gov/ics/advisories/icsa-21-035-01https://www.zerodayinitiative.com/advisories/ZDI-21-318/https://www.zerodayinitiative.com/advisories/ZDI-21-320/https://www.zerodayinitiative.com/advisories/ZDI-21-321/https://www.zerodayinitiative.com/advisories/ZDI-21-322/https://www.zerodayinitiative.com/advisories/ZDI-21-326/