vendor:
Workgroup PDM
by:
Mohamed Shetta
9,3
CVSS
HIGH
Remote Code Execution
119
CWE
Product Name: Workgroup PDM
Affected Version From: SolidWorks Workgroup PDM 2014 SP2
Affected Version To: SolidWorks Workgroup PDM 2014 SP2
Patch Exists: YES
Related CWE: CVE-2014-1763
CPE: a:solidworks:workgroup_pdm:2014:sp2
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 7
2014
SolidWorks Workgroup PDM 2014 SP2 Opcode 2001 Remote Code Execution Vulnerability
SolidWorks Workgroup PDM 2014 SP2 is vulnerable to a remote code execution vulnerability due to a stack buffer overflow. The vulnerability exists in the pdmwService.exe process, which listens on port 30000. An attacker can exploit this vulnerability by sending a specially crafted packet containing an overly long string to the vulnerable service. This will cause a stack buffer overflow, overwriting the SEH and return address, allowing the attacker to execute arbitrary code on the vulnerable system.
Mitigation:
Upgrade to the latest version of SolidWorks Workgroup PDM.