7.8

CVE-2026-1333

A Use of Uninitialized Variable vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Release SOLIDWORKS Desktop 2026 could allow an attacker to execute arbitrary code while opening a specially crafted EPRT file.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
3dsSolidworks Edrawings Version2025 Update-
3dsSolidworks Edrawings Version2025 Updatesp1.0
3dsSolidworks Edrawings Version2025 Updatesp2.0
3dsSolidworks Edrawings Version2025 Updatesp3.0
3dsSolidworks Edrawings Version2025 Updatesp4.0
3dsSolidworks Edrawings Version2025 Updatesp5.0
3dsSolidworks Edrawings Version2026 Update-
3dsSolidworks Edrawings Version2026 Updatesp1.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.02% 0.041
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
3DS.Information-Security@3ds.com 7.8 1.8 5.9
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CWE-457 Use of Uninitialized Variable

The code uses a variable that has not been initialized, leading to unpredictable or unintended results.