Skip to main content

Vendor/product archive

3ds / 3dexperience CVEs

Beta · best-effort

11 CVEs tagged to 3ds / 3dexperience0 Critical, 10 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2025-10559

Published Mar 31, 2026

A Path Traversal vulnerability affecting Factory Resource Management in DELMIA Factory Resource Manager from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2025x allows…

CVSS 7.1 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-10553

Published Mar 31, 2026

A Stored Cross-site Scripting (XSS) vulnerability affecting Factory Resource Management in DELMIA Factory Resource Manager from Release 3DEXPERIENCE R2023x through Release 3DEXPER…

CVSS 8.7 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-10551

Published Mar 31, 2026

A Stored Cross-site Scripting (XSS) vulnerability affecting Document Management in ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2023x through Release 3DEXPER…

CVSS 8.7 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-7939

Published Sep 2, 2024

A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-7938

Published Sep 2, 2024

A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2024x allows an attacker to exec…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-7932

Published Sep 2, 2024

A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's br…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-6379

Published Aug 20, 2024

A reflected Cross-site Scripting (XSS) vulnerability affecting 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrar…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-6378

Published Aug 20, 2024

A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-6377

Published Aug 20, 2024

An URL redirection to untrusted site (open redirect) vulnerability affecting 3DPassport in 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2023-1997

Published Aug 28, 2023

An OS Command Injection vulnerability exists in SIMULIA 3DOrchestrate from Release 3DEXPERIENCE R2021x through Release 3DEXPERIENCE R2023x. A specially crafted HTTP request can le…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-1996

Published May 19, 2023

A reflected Cross-site Scripting (XSS) vulnerability in Release 3DEXPERIENCE R2018x through Release 3DEXPERIENCE R2023x allows an attacker to execute arbitrary script code.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-11 of 11 CVEsPage 1 of 1