Записи 3ds
67 опубликованных записей вендора 3ds.
Профиль для исследователя
- Попали в KEV
- 3 · 4,5 %
- С эксплойтом
- 3 · 4,5 %
- Pre-auth RCE
- 12
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- 85 дн.
Повторяющиеся классы
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')34
- CWE-502 Deserialization of Untrusted Data4
- CWE-787 Out-of-bounds Write4
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')3
- CWE-122 Heap-based Buffer Overflow3
- CWE-416 Use After Free2
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
67 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
95Срочно | CVE-2025-5086Готовый эксплойт | Deserialization of Untrusted Data vulnerability affecting DELMIA Apriso from Release 2020 through Release 20253ds · delmia apriso · CWE-502 | Критическая9,0 | KEV | 96,9 % | 2 июн. 2025 г. |
88Срочно | CVE-2025-6205Готовый эксплойт | Missing authorization vulnerability affecting DELMIA Apriso from Release 2020 through Release 20253ds · delmia apriso · CWE-862 | Критическая9,1 | KEV | 73,3 % | 4 авг. 2025 г. |
85Срочно | CVE-2025-6204Готовый эксплойт | Improper Control of Generation of Code (Code Injection) vulnerability affecting DELMIA Apriso from Release 2020 through Release 20253ds · delmia apriso · CWE-94 | Высокая8,0 | KEV | 78,0 % | 4 авг. 2025 г. |
41В плане | CVE-2014-2072Proof of concept | Dassault Systemes Catia V5-6R2013: Stack Buffer Overflow due to inadequate boundary checks3ds · catia · CWE-787 | Критическая9,8 | — | 7,4 % | 8 янв. 2020 г. |
40В плане | CVE-2014-2073Эксплойта нет | Stack-based buffer overflow in Dassault Systemes CATIA V5-6R2013 allows remote attackers to execute arbitrary code via a crafted packet, rel3ds · catia · CWE-787 | Критическая9,8 | — | 5,0 % | 10 апр. 2018 г. |
39Наблюдать | CVE-2023-6078Эксплойта нет | OS Command Injection vulnerability affecting BIOVIA Materials Studio products from Release BIOVIA 2021 through Release BIOVIA 20233ds · biovia materials studio · CWE-78 | Критическая9,8 | — | 1,6 % | 1 февр. 2024 г. |
39Наблюдать | CVE-2023-1287Эксплойта нет | ENOVIA Live Collaboration V6R2013xE is affected by an XSL template injection vulnerability3ds · enovia live collaboration · CWE-74 | Критическая9,8 | — | 1,0 % | 9 мар. 2023 г. |
38Наблюдать | CVE-2024-1624Эксплойта нет | OS Command Injection vulnerability affecting documentation server on certain Releases of 3DEXPERIENCE, SIMULIA Abaqus, SIMULIA Isight and CATIA Composerdassault systèmes · documentation server · CWE-78 | Критическая9,4 | — | 2,1 % | 1 мар. 2024 г. |
37Наблюдать | CVE-2024-3300Proof of concept | Pre-authentication Unsafe .NET object deserialization vulnerability affecting DELMIA Apriso Release 2019 through Release 2024dassault systèmes · delmia apriso · CWE-502 | Критическая9,0 | — | 2,8 % | 30 мая 2024 г. |
36Наблюдать | CVE-2023-1997Эксплойта нет | OS Command Injection vulnerability affecting SIMULIA 3DOrchestrate from Release 3DEXPERIENCE R2021x through Release 3DEXPERIENCE R2023x3ds · 3dexperience · CWE-78 | Высокая8,8 | — | 1,9 % | 28 авг. 2023 г. |
36Наблюдать | CVE-2025-10559Эксплойта нет | Path Traversal vulnerability affecting Factory Resource Management in DELMIA Factory Resource Manager from Release 3DEXPERIENCE R2023x through Release 3DEXPERIE3ds · 3dexperience · CWE-22 | Критическая9,1 | — | 0,3 % | 31 мар. 2026 г. |
35Наблюдать | CVE-2023-2141Эксплойта нет | Unsafe .NET object deserialization affecting DELMIA Apriso Release 2017 through Release 20223ds · delmia apriso · CWE-502 | Высокая8,8 | — | 1,0 % | 21 апр. 2023 г. |
34Наблюдать | CVE-2024-3301Эксплойта нет | Post-authentication Unsafe .NET object deserialization vulnerability affecting DELMIA Apriso Release 2019 through Release 2024dassault systèmes · delmia apriso · CWE-502 | Высокая8,5 | — | 0,7 % | 30 мая 2024 г. |
31Наблюдать | CVE-2020-25507Эксплойта нет | An incorrect permission assignment during the installation script of TeamworkCloud 18.0 thru 19.0 allows a local unprivileged attacker to ex3ds · teamwork cloud · CWE-732 | Высокая7,8 | — | 0,5 % | 28 дек. 2020 г. |
31Наблюдать | CVE-2023-2762Эксплойта нет | Use-After-Free vulnerability in SLDPRT file reading procedure affecting SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 20233ds · 3dexperience solidworks · CWE-416 | Высокая7,8 | — | 0,4 % | 12 июл. 2023 г. |
31Наблюдать | CVE-2024-3299Эксплойта нет | Out-Of-Bounds Write, Use of Uninitialized Resource and Use-After-Free vulnerabilities exist in the SLDDRW and SLDPRT file reading procedure in eDrawings from Redassault systèmes · edrawings · CWE-416 | Высокая7,8 | — | 0,4 % | 4 апр. 2024 г. |
31Наблюдать | CVE-2023-2763Эксплойта нет | Use-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading procedure in SOLIDWORKS Desktop from Re3ds · 3dexperience solidworks · CWE-122 | Высокая7,8 | — | 0,4 % | 12 июл. 2023 г. |
31Наблюдать | CVE-2024-1847Эксплойта нет | Multiple vulnerabilities exist in file reading procedure in eDrawings from Release SOLIDWORKS 2023 through Release SOLIDWORKS 20243ds · solidworks · CWE-122 | Высокая7,8 | — | 0,3 % | 28 февр. 2024 г. |
31Наблюдать | CVE-2024-3298Эксплойта нет | Out-Of-Bounds Write and Type Confusion vulnerabilities exist in the DWG and DXF file reading procedure in eDrawings from Release SOLIDWORKS 2023 through Releasedassault systèmes · edrawings · CWE-787 | Высокая7,8 | — | 0,3 % | 4 апр. 2024 г. |
31Наблюдать | CVE-2024-1848Эксплойта нет | Multiple vulnerabilities exist in file reading procedure in SOLIDWORKS Desktop on Release SOLIDWORKS 2024dassault systèmes · solidworks desktop · CWE-122 | Высокая7,8 | — | 0,3 % | 22 мар. 2024 г. |
31Наблюдать | CVE-2026-3476Эксплойта нет | Code Injection vulnerability affecting SOLIDWORKS Desktop from Release 2025 through Release 20263ds · solidworks · CWE-94 | Высокая7,8 | — | 0,2 % | 16 мар. 2026 г. |
31Наблюдать | CVE-2026-1335Эксплойта нет | Out-Of-Bounds Write vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Release SOLIDWO3ds · solidworks edrawings · CWE-787 | Высокая7,8 | — | 0,2 % | 16 февр. 2026 г. |
31Наблюдать | CVE-2026-1333Эксплойта нет | Use of Uninitialized Variable vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Relea3ds · solidworks edrawings · CWE-457 | Высокая7,8 | — | 0,2 % | 16 февр. 2026 г. |
31Наблюдать | CVE-2026-1334Эксплойта нет | Out-Of-Bounds Read vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Release SOLIDWOR3ds · solidworks edrawings · CWE-125 | Высокая7,8 | — | 0,2 % | 16 февр. 2026 г. |
30Наблюдать | CVE-2013-4721Эксплойта нет | SQL injection vulnerability in the RSS feed from records extension 1.0.0 and earlier for TYPO3 allows remote attackers to execute arbitrary typo3 · typo3 · CWE-89 | Высокая7,5 | — | 1,2 % | 27 июн. 2013 г. |
- CVE-2025-508695Срочно
Deserialization of Untrusted Data vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025
КритическаяCVSS 9,0KEVГотовый эксплойтEPSS 97 %3ds · delmia apriso2 июн. 2025 г.
- CVE-2025-620588Срочно
Missing authorization vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025
КритическаяCVSS 9,1KEVГотовый эксплойтEPSS 73 %3ds · delmia apriso4 авг. 2025 г.
- CVE-2025-620485Срочно
Improper Control of Generation of Code (Code Injection) vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025
ВысокаяCVSS 8,0KEVГотовый эксплойтEPSS 78 %3ds · delmia apriso4 авг. 2025 г.
- CVE-2014-207241В плане
Dassault Systemes Catia V5-6R2013: Stack Buffer Overflow due to inadequate boundary checks
КритическаяCVSS 9,8Proof of conceptEPSS 7 %3ds · catia8 янв. 2020 г.
- CVE-2014-207340В плане
Stack-based buffer overflow in Dassault Systemes CATIA V5-6R2013 allows remote attackers to execute arbitrary code via a crafted packet, rel
КритическаяCVSS 9,8Эксплойта нетEPSS 5 %3ds · catia10 апр. 2018 г.
- CVE-2023-607839Наблюдать
OS Command Injection vulnerability affecting BIOVIA Materials Studio products from Release BIOVIA 2021 through Release BIOVIA 2023
КритическаяCVSS 9,8Эксплойта нетEPSS 2 %3ds · biovia materials studio1 февр. 2024 г.
- CVE-2023-128739Наблюдать
ENOVIA Live Collaboration V6R2013xE is affected by an XSL template injection vulnerability
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %3ds · enovia live collaboration9 мар. 2023 г.
- CVE-2024-162438Наблюдать
OS Command Injection vulnerability affecting documentation server on certain Releases of 3DEXPERIENCE, SIMULIA Abaqus, SIMULIA Isight and CATIA Composer
КритическаяCVSS 9,4Эксплойта нетEPSS 2 %dassault systèmes · documentation server1 мар. 2024 г.
- CVE-2024-330037Наблюдать
Pre-authentication Unsafe .NET object deserialization vulnerability affecting DELMIA Apriso Release 2019 through Release 2024
КритическаяCVSS 9,0Proof of conceptEPSS 3 %dassault systèmes · delmia apriso30 мая 2024 г.
- CVE-2023-199736Наблюдать
OS Command Injection vulnerability affecting SIMULIA 3DOrchestrate from Release 3DEXPERIENCE R2021x through Release 3DEXPERIENCE R2023x
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %3ds · 3dexperience28 авг. 2023 г.
- CVE-2025-1055936Наблюдать
Path Traversal vulnerability affecting Factory Resource Management in DELMIA Factory Resource Manager from Release 3DEXPERIENCE R2023x through Release 3DEXPERIE
КритическаяCVSS 9,1Эксплойта нетEPSS 0 %3ds · 3dexperience31 мар. 2026 г.
- CVE-2023-214135Наблюдать
Unsafe .NET object deserialization affecting DELMIA Apriso Release 2017 through Release 2022
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %3ds · delmia apriso21 апр. 2023 г.
- CVE-2024-330134Наблюдать
Post-authentication Unsafe .NET object deserialization vulnerability affecting DELMIA Apriso Release 2019 through Release 2024
ВысокаяCVSS 8,5Эксплойта нетEPSS 1 %dassault systèmes · delmia apriso30 мая 2024 г.
- CVE-2020-2550731Наблюдать
An incorrect permission assignment during the installation script of TeamworkCloud 18.0 thru 19.0 allows a local unprivileged attacker to ex
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %3ds · teamwork cloud28 дек. 2020 г.
- CVE-2023-276231Наблюдать
Use-After-Free vulnerability in SLDPRT file reading procedure affecting SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %3ds · 3dexperience solidworks12 июл. 2023 г.
- CVE-2024-329931Наблюдать
Out-Of-Bounds Write, Use of Uninitialized Resource and Use-After-Free vulnerabilities exist in the SLDDRW and SLDPRT file reading procedure in eDrawings from Re
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %dassault systèmes · edrawings4 апр. 2024 г.
- CVE-2023-276331Наблюдать
Use-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading procedure in SOLIDWORKS Desktop from Re
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %3ds · 3dexperience solidworks12 июл. 2023 г.
- CVE-2024-184731Наблюдать
Multiple vulnerabilities exist in file reading procedure in eDrawings from Release SOLIDWORKS 2023 through Release SOLIDWORKS 2024
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %3ds · solidworks28 февр. 2024 г.
- CVE-2024-329831Наблюдать
Out-Of-Bounds Write and Type Confusion vulnerabilities exist in the DWG and DXF file reading procedure in eDrawings from Release SOLIDWORKS 2023 through Release
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %dassault systèmes · edrawings4 апр. 2024 г.
- CVE-2024-184831Наблюдать
Multiple vulnerabilities exist in file reading procedure in SOLIDWORKS Desktop on Release SOLIDWORKS 2024
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %dassault systèmes · solidworks desktop22 мар. 2024 г.
- CVE-2026-347631Наблюдать
Code Injection vulnerability affecting SOLIDWORKS Desktop from Release 2025 through Release 2026
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %3ds · solidworks16 мар. 2026 г.
- CVE-2026-133531Наблюдать
Out-Of-Bounds Write vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Release SOLIDWO
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %3ds · solidworks edrawings16 февр. 2026 г.
- CVE-2026-133331Наблюдать
Use of Uninitialized Variable vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Relea
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %3ds · solidworks edrawings16 февр. 2026 г.
- CVE-2026-133431Наблюдать
Out-Of-Bounds Read vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Release SOLIDWOR
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %3ds · solidworks edrawings16 февр. 2026 г.
- CVE-2013-472130Наблюдать
SQL injection vulnerability in the RSS feed from records extension 1.0.0 and earlier for TYPO3 allows remote attackers to execute arbitrary
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %typo3 · typo327 июн. 2013 г.