Vulnerability Description
A vulnerability has been identified in JT Open (All versions < V11.5), JT2Go (All versions < V2406.0003), PLM XML SDK (All versions < V7.1.0.014), Teamcenter Visualization V14.2 (All versions < V14.2.0.13), Teamcenter Visualization V14.3 (All versions < V14.3.0.11), Teamcenter Visualization V2312 (All versions < V2312.0008), Teamcenter Visualization V2406 (All versions < V2406.0003). The affected applications contain a null pointer dereference vulnerability while parsing specially crafted XML files. An attacker could leverage this vulnerability to crash the application causing denial of service condition.
CVSS Score
LOW
Related Weaknesses (CWE)
References
- https://cert-portal.siemens.com/productcert/html/ssa-824889.html
- https://cert-portal.siemens.com/productcert/html/ssa-959281.html
- https://cert-portal.siemens.com/productcert/html/ssa-824889.html
FAQ
What is CVE-2024-37996?
CVE-2024-37996 is a vulnerability with a CVSS score of 3.3 (LOW). A vulnerability has been identified in JT Open (All versions < V11.5), JT2Go (All versions < V2406.0003), PLM XML SDK (All versions < V7.1.0.014), Teamcenter Visualization V14.2 (All versions < V14.2....
How severe is CVE-2024-37996?
CVE-2024-37996 has been rated LOW with a CVSS base score of 3.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-37996?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.