CVE-2022-41613

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
06/01/2023
Last modified:
13/02/2025

Description

Bentley Systems MicroStation Connect versions <br /> <br /> 10.17.0.209 and prior are vulnerable to an Out-of-Bounds Read when when parsing DGN files, which may allow an attacker to crash the product, disclose sensitive information, or execute arbitrary code.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:bentley:microstation_connect:*:*:*:*:*:*:*:* 10.17.0.209 (including)