7.8

CVE-2026-1333

Use of Uninitialized Variable vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Release SOLIDWORKS Desktop 2026

A Use of Uninitialized Variable vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Release SOLIDWORKS Desktop 2026 could allow an attacker to execute arbitrary code while opening a specially crafted EPRT file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
3ds ≫ Solidworks Edrawings Version 2025 Update -
3ds ≫ Solidworks Edrawings Version 2025 Update sp1.0
3ds ≫ Solidworks Edrawings Version 2025 Update sp2.0
3ds ≫ Solidworks Edrawings Version 2025 Update sp3.0
3ds ≫ Solidworks Edrawings Version 2025 Update sp4.0
3ds ≫ Solidworks Edrawings Version 2025 Update sp5.0
3ds ≫ Solidworks Edrawings Version 2026 Update -
3ds ≫ Solidworks Edrawings Version 2026 Update sp1.1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.2% 0.097
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
3DS.Information-Security@3ds.com 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CWE-457 Use of Uninitialized Variable

The code uses a variable that has not been initialized, leading to unpredictable or unintended results.

https://www.3ds.com/trust-center/security/security-advisories/cve-2026-1333
Vendor Advisory