Skip to main content

Vendor archive

3ds CVEs

Beta · best-effort

61 CVEs tagged to vendor 3ds5 Critical, 47 High, 8 Medium, 1 Low, 0 Unrated.

CVE-2025-0598

Published Mar 17, 2025

A stored Cross-site Scripting (XSS) vulnerability affecting Relations in ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R202…

CVSS 8.7 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2025-0596

Published Mar 17, 2025

A stored Cross-site Scripting (XSS) vulnerability affecting Bookmark Editor in ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x allows an attacker to execute…

CVSS 8.7 · High
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2024-12092

Published Dec 16, 2024

A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script c…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-12091

Published Dec 16, 2024

A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-12090

Published Dec 16, 2024

A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script c…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-12089

Published Dec 16, 2024

A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-6380

Published Oct 16, 2024

A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-7736

Published Sep 19, 2024

A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-8004

Published Sep 2, 2024

A stored Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-7939

Published Sep 2, 2024

A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-7938

Published Sep 2, 2024

A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2024x allows an attacker to exec…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-7932

Published Sep 2, 2024

A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's br…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-6379

Published Aug 20, 2024

A reflected Cross-site Scripting (XSS) vulnerability affecting 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrar…

CVSS 7.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-6378

Published Aug 20, 2024

A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows…

CVSS 8.7 · High
Vendor/product tagsBeta · best-effort

CVE-2024-6377

Published Aug 20, 2024

An URL redirection to untrusted site (open redirect) vulnerability affecting 3DPassport in 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an…

CVSS 8.1 · High
Vendor/product tagsBeta · best-effort

CVE-2024-0935

Published Feb 1, 2024

Insertion of Sensitive Information into Log File vulnerabilities are affecting DELMIA Apriso Release 2019 through Release 2024

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-6078

Published Feb 1, 2024

An OS Command Injection vulnerability exists in BIOVIA Materials Studio products from Release BIOVIA 2021 through Release BIOVIA 2023. Upload of a specially crafted perl script ca…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-3589

Published Oct 9, 2023

A Cross-Site Request Forgery (CSRF) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x could allow with some very specific condition…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-3588

Published Sep 13, 2023

A stored Cross-site Scripting (XSS) vulnerability affecting Teamwork Cloud from No Magic Release 2021x through No Magic Release 2022x allows an attacker to execute arbitrary scrip…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-1997

Published Aug 28, 2023

An OS Command Injection vulnerability exists in SIMULIA 3DOrchestrate from Release 3DEXPERIENCE R2021x through Release 3DEXPERIENCE R2023x. A specially crafted HTTP request can le…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-2763

Published Jul 12, 2023

Use-After-Free, Out-of-bounds Write and Heap-based Buffer Overflow vulnerabilities exist in the DWG and DXF file reading procedure in SOLIDWORKS Desktop from Release SOLIDWORKS 20…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-2762

Published Jul 12, 2023

A Use-After-Free vulnerability in SLDPRT file reading procedure exists in SOLIDWORKS Desktop from Release SOLIDWORKS 2021 through Release SOLIDWORKS 2023. This vulnerability could…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-1996

Published May 19, 2023

A reflected Cross-site Scripting (XSS) vulnerability in Release 3DEXPERIENCE R2018x through Release 3DEXPERIENCE R2023x allows an attacker to execute arbitrary script code.

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-2141

Published Apr 21, 2023

An unsafe .NET object deserialization in DELMIA Apriso Release 2017 through Release 2022 could lead to post-authentication remote code execution.

CVSS 8.5 · High
Vendor/product tagsBeta · best-effort
Showing 26-50 of 61 CVEsPage 2 of 3