Use-After-Free Vulnerability in SOLIDWORKS Desktop SLDPRT File Reader

Use-After-Free Vulnerability in SOLIDWORKS Desktop SLDPRT File Reader

CVE-2023-2762 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

A Use-After-Free vulnerability in SLDPRT file reading procedure exists in SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023. This vulnerability could allow an attacker to execute arbitrary code while opening a specially crafted SLDPRT file.

Learn more about our Cis Benchmark Audit For Desktop Software.