Vulnerability: Out-of-Bounds Read and Stack Overflow in Bentley MicroStation and MicroStation-based Applications

Vulnerability: Out-of-Bounds Read and Stack Overflow in Bentley MicroStation and MicroStation-based Applications

CVE-2022-42899 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds read and stack overflow issues when opening crafted SKP files. Exploiting these issues could lead to information disclosure and code execution. The fixed versions are 10.17.01.58* for MicroStation and 10.17.01.19* for Bentley View.

Learn more about our Web Application Penetration Testing UK.