Vulnerabilities > Bentley

DATE CVE VULNERABILITY TITLE RISK
2023-12-22 CVE-2023-51708 Improper Authentication vulnerability in Bentley products
Bentley eB System Management Console applications within Assetwise Integrity Information Server allow an unauthenticated user to view configuration options via a crafted request, leading to information disclosure.
network
low complexity
bentley CWE-287
8.6
2023-09-12 CVE-2023-4863 Out-of-bounds Write vulnerability in multiple products
Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page.
8.8
2023-01-06 CVE-2022-40201 Stack-based Buffer Overflow vulnerability in Bentley Microstation Connect 10.16.0.80/10.16.2.034
Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to a Stack-Based Buffer Overflow when a malformed design (DGN) file is parsed.
local
low complexity
bentley CWE-121
7.8
2023-01-06 CVE-2022-41613 Out-of-bounds Read vulnerability in Bentley Microstation Connect 10.16.0.80/10.16.2.034
Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to an Out-of-Bounds Read when when parsing DGN files, which may allow an attacker to crash the product, disclose sensitive information, or execute arbitrary code.
local
low complexity
bentley CWE-125
7.8
2022-10-13 CVE-2022-42899 Out-of-bounds Read vulnerability in Bentley Microstation and View
Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds read and stack overflow issues when opening crafted SKP files.
local
low complexity
bentley CWE-125
7.8
2022-10-13 CVE-2022-42900 Out-of-bounds Read vulnerability in Bentley Microstation and View
Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds read issues when opening crafted FBX files.
local
low complexity
bentley CWE-125
7.8
2022-10-13 CVE-2022-42901 Out-of-bounds Write vulnerability in Bentley Microstation and View
Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds and stack overflow issues when opening crafted XMT files.
local
low complexity
bentley CWE-787
7.8
2022-02-18 CVE-2021-46562 Out-of-bounds Read vulnerability in Bentley Microstation, Microstation Connect and View
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80.
network
bentley CWE-125
6.8
2022-02-18 CVE-2021-46563 Out-of-bounds Read vulnerability in Bentley Microstation, Microstation Connect and View
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80.
network
bentley CWE-125
6.8
2022-02-18 CVE-2021-46564 Out-of-bounds Write vulnerability in Bentley Microstation, Microstation Connect and View
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80.
network
bentley CWE-787
6.8