CVE-2022-40201
Severity CVSS v4.0:
Pending analysis
Type:
CWE-121
Stack-based Buffer Overflow
Publication date:
06/01/2023
Last modified:
13/02/2025
Description
Bentley Systems MicroStation Connect versions <br />
<br />
10.17.0.209 and prior are vulnerable to a Stack-Based Buffer Overflow when a malformed design (DGN) file is parsed. This may allow an attacker to execute arbitrary code.
Impact
Base Score 3.x
7.80
Severity 3.x
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:bentley:microstation_connect:*:*:*:*:*:*:*:* | 10.17.0.209 (including) |
To consult the complete list of CPE names with products and versions, see this page



