GHSA-q55h-q4fq-4wj2
GitHub Security Advisory
⚠ Unreviewed
HIGH
Has CVE
Advisory Details
Due to lack of proper memory management, when a victim opens manipulated Computer Graphics Metafile (.cgm, CgmCore.dll) file received from untrusted sources in SAP 3D Visual Enterprise Viewer - version 9, a Remote Code Execution can be triggered when payload forces a stack-based overflow and or a re-use of dangling pointer which refers to overwritten space in memory.
Related CVEs
Key Information
7.5
/10
Dataset
Last updated: June 25, 2025 8:46 PM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.