CVE-2024-47427 – Substance3D Painter Arbitrary Code Execution Vulnerability

CVE ID : CVE-2024-47427

Published : Nov. 12, 2024, 8:15 p.m. | 1 hour, 2 minutes ago

Description : Substance3D – Painter versions 10.1.0 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

Severity: 7.8 | HIGH

Visit the link for more details, such as CVSS details, affected products, timeline, and more…

CVE-2024-47427 – Substance3D Painter Arbitrary Code Execution Vulnerability