Vulnerabilities > Bentley

DATE CVE VULNERABILITY TITLE RISK
2023-12-22 CVE-2023-51708 Improper Authentication vulnerability in Bentley products
Bentley eB System Management Console applications within Assetwise Integrity Information Server allow an unauthenticated user to view configuration options via a crafted request, leading to information disclosure.
network
low complexity
bentley CWE-287
8.6
2023-01-06 CVE-2022-40201 Stack-based Buffer Overflow vulnerability in Bentley Microstation Connect 10.16.0.80/10.16.2.034
Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to a Stack-Based Buffer Overflow when a malformed design (DGN) file is parsed.
local
low complexity
bentley CWE-121
7.8
2023-01-06 CVE-2022-41613 Out-of-bounds Read vulnerability in Bentley Microstation Connect 10.16.0.80/10.16.2.034
Bentley Systems MicroStation Connect versions 10.17.0.209 and prior are vulnerable to an Out-of-Bounds Read when when parsing DGN files, which may allow an attacker to crash the product, disclose sensitive information, or execute arbitrary code.
local
low complexity
bentley CWE-125
7.8
2022-10-13 CVE-2022-42899 Out-of-bounds Read vulnerability in Bentley Microstation and View
Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds read and stack overflow issues when opening crafted SKP files.
local
low complexity
bentley CWE-125
7.8
2022-10-13 CVE-2022-42900 Out-of-bounds Read vulnerability in Bentley Microstation and View
Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds read issues when opening crafted FBX files.
local
low complexity
bentley CWE-125
7.8
2022-10-13 CVE-2022-42901 Out-of-bounds Write vulnerability in Bentley Microstation and View
Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds and stack overflow issues when opening crafted XMT files.
local
low complexity
bentley CWE-787
7.8
2022-02-18 CVE-2021-46562 Out-of-bounds Read vulnerability in Bentley Microstation, Microstation Connect and View
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80.
network
bentley CWE-125
6.8
2022-02-18 CVE-2021-46563 Out-of-bounds Read vulnerability in Bentley Microstation, Microstation Connect and View
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80.
network
bentley CWE-125
6.8
2022-02-18 CVE-2021-46564 Out-of-bounds Write vulnerability in Bentley Microstation, Microstation Connect and View
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80.
network
bentley CWE-787
6.8
2022-02-18 CVE-2021-46565 Stack-based Buffer Overflow vulnerability in Bentley Microstation, Microstation Connect and View
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80.
network
bentley CWE-121
6.8