Vulnerabilities > 3DS > 3Dexperience
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2024-09-02 | CVE-2024-7932 | Cross-site Scripting vulnerability in 3DS 3Dexperience R2024X A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session. | 5.4 |
2024-09-02 | CVE-2024-7938 | Cross-site Scripting vulnerability in 3DS 3Dexperience R2023X/R2024X A stored Cross-site Scripting (XSS) vulnerability affecting 3DDashboard in 3DSwymer from Release 3DEXPERIENCE R2023x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session. | 5.4 |
2024-09-02 | CVE-2024-7939 | Cross-site Scripting vulnerability in 3DS 3Dexperience R2024X A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session. | 5.4 |
2024-08-20 | CVE-2024-6377 | Open Redirect vulnerability in 3DS 3Dexperience R2022X/R2023X An URL redirection to untrusted site (open redirect) vulnerability affecting 3DPassport in 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to redirect users to an arbitrary website via a crafted URL. | 6.1 |
2024-08-20 | CVE-2024-6378 | Cross-site Scripting vulnerability in 3DS 3Dexperience R2022X/R2023X A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session. | 5.4 |
2024-08-20 | CVE-2024-6379 | Cross-site Scripting vulnerability in 3DS 3Dexperience R2022X/R2023X A reflected Cross-site Scripting (XSS) vulnerability affecting 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code in user's browser session. | 6.1 |
2023-08-28 | CVE-2023-1997 | OS Command Injection vulnerability in 3DS 3Dexperience R2021X/R2022X/R2023X An OS Command Injection vulnerability exists in SIMULIA 3DOrchestrate from Release 3DEXPERIENCE R2021x through Release 3DEXPERIENCE R2023x. | 8.8 |
2023-05-19 | CVE-2023-1996 | Cross-site Scripting vulnerability in 3DS 3Dexperience A reflected Cross-site Scripting (XSS) vulnerability in Release 3DEXPERIENCE R2018x through Release 3DEXPERIENCE R2023x allows an attacker to execute arbitrary script code. | 6.1 |