Home
HIGH: 7.8 CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HDefault status
unaffected
Release 2025 SP0 (custom)
affected
Release 2026 SP0
affected
Description
A Code Injection vulnerability affecting SOLIDWORKS Desktop from Release 2025 through Release 2026 could allow an attacker to execute arbitrary code on the user's machine while opening a specially crafted file.
Problem types
CWE-94 Improper Control of Generation of Code ('Code Injection')
Product status
Release 2025 SP0 (custom)
Release 2026 SP0
Credits
Simón Marcote
References
www.3ds.com/...er/security/security-advisories/cve-2026-3476