📦 View

by Bentley

🔍 What is View?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-43653

HIGH CVSS 7.8 May 7, 2024

This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious SKP files in Bentley View. Attackers can exploit an out-of-bounds write during SKP file pa...

CVE-2022-43655

HIGH CVSS 7.8 May 7, 2024

A heap-based buffer overflow vulnerability in Bentley View's FBX file parser allows remote attackers to execute arbitrary code when users open malicious FBX files. This affects users of Bentley View s...

CVE-2022-43651

HIGH CVSS 7.8 May 7, 2024

This vulnerability allows remote attackers to execute arbitrary code on affected Bentley View installations by tricking users into opening malicious SKP files. The flaw exists in how Bentley View hand...

CVE-2022-28320

HIGH CVSS 7.8 Mar 29, 2023

This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious 3DM files in Bentley View. Attackers can gain control of the current process. Users of Ben...

CVE-2022-28314

HIGH CVSS 7.8 Mar 29, 2023

This is a buffer overflow vulnerability in Bentley MicroStation CONNECT that allows remote code execution when users open malicious IFC files. Attackers can exploit this to run arbitrary code with the...

CVE-2022-28316

HIGH CVSS 7.8 Mar 29, 2023

CVE-2022-28316 is a buffer overflow vulnerability in Bentley MicroStation CONNECT that allows remote code execution when users open malicious IFC files. Attackers can exploit this to execute arbitrary...

CVE-2022-28318

HIGH CVSS 7.8 Mar 29, 2023

CVE-2022-28318 is a buffer overflow vulnerability in Bentley MicroStation CONNECT that allows remote code execution when users open malicious IFC files. Attackers can exploit this to execute arbitrary...

CVE-2022-28642

HIGH CVSS 7.8 Mar 29, 2023

CVE-2022-28642 is a buffer overflow vulnerability in Bentley MicroStation CONNECT that allows remote code execution when users open malicious DGN files. Attackers can exploit this to run arbitrary cod...

CVE-2022-28644

HIGH CVSS 7.8 Mar 29, 2023

CVE-2022-28644 is a buffer overflow vulnerability in Bentley MicroStation CONNECT that allows remote code execution when users open malicious DGN files. Attackers can exploit this to execute arbitrary...

CVE-2022-28646

HIGH CVSS 7.8 Mar 29, 2023

This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious IFC files in Bentley MicroStation CONNECT. The flaw is a buffer overflow in IFC file parsi...

CVE-2022-28301

HIGH CVSS 7.8 Mar 29, 2023

This is a buffer overflow vulnerability in Bentley MicroStation CONNECT that allows remote code execution when users open malicious IFC files. Attackers can exploit this to run arbitrary code with the...

CVE-2022-28303

HIGH CVSS 7.8 Mar 29, 2023

This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious SKP files in Bentley View. Attackers can gain control of the current process, potentially ...

CVE-2022-28305

HIGH CVSS 7.8 Mar 29, 2023

This is a stack-based buffer overflow vulnerability in Bentley MicroStation CONNECT that allows remote code execution when users open malicious OBJ files. Attackers can exploit it to run arbitrary cod...

CVE-2022-28307

HIGH CVSS 7.8 Mar 29, 2023

This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious DXF files in Bentley View. The flaw is an out-of-bounds read during DXF file parsing that ...

CVE-2022-28310

HIGH CVSS 7.8 Mar 29, 2023

CVE-2022-28310 is a use-after-free vulnerability in Bentley MicroStation CONNECT that allows remote code execution when a user opens a malicious SKP file. Attackers can exploit this to execute arbitra...

CVE-2021-46652

HIGH CVSS 7.8 Feb 18, 2022

CVE-2021-46652 is a buffer overflow vulnerability in Bentley View's DGN file parser that allows remote code execution. Attackers can exploit it by tricking users into opening malicious DGN files, pote...

CVE-2021-46655

HIGH CVSS 7.8 Feb 18, 2022

CVE-2021-46655 is a use-after-free vulnerability in Bentley View's JT file parser that allows remote code execution. Attackers can exploit this by tricking users into opening malicious JT files or vis...

CVE-2021-46633

HIGH CVSS 7.8 Feb 18, 2022

This is a use-after-free vulnerability in Bentley MicroStation CONNECT's PDF parser that allows remote code execution. Attackers can exploit it by tricking users into opening malicious PDF files, pote...

CVE-2021-46635

HIGH CVSS 7.8 Feb 18, 2022

CVE-2021-46635 is a buffer overflow vulnerability in Bentley MicroStation CONNECT's DGN file parser that allows remote code execution. Attackers can exploit this by tricking users into opening malicio...

CVE-2021-46638

HIGH CVSS 7.8 Feb 18, 2022

This is a stack-based buffer overflow vulnerability in Bentley MicroStation CONNECT that allows remote code execution. Attackers can exploit it by tricking users into opening malicious DGN files, pote...

CVE-2021-46640

HIGH CVSS 7.8 Feb 18, 2022

This is a buffer overflow vulnerability in Bentley View's DGN file parser that allows remote code execution. Attackers can exploit it by tricking users into opening malicious DGN files or visiting mal...

CVE-2021-46643

HIGH CVSS 7.8 Feb 18, 2022

This is a stack-based buffer overflow vulnerability in Bentley View's DGN file parser. Attackers can execute arbitrary code by tricking users into opening malicious DGN files or visiting malicious web...

CVE-2021-46645

HIGH CVSS 7.8 Feb 18, 2022

This is a buffer overflow vulnerability in Bentley MicroStation CONNECT's BMP image parser that allows remote code execution. Attackers can exploit it by tricking users into opening malicious BMP file...

CVE-2021-46647

HIGH CVSS 7.8 Feb 18, 2022

CVE-2021-46647 is a heap-based buffer overflow vulnerability in Bentley MicroStation CONNECT's BMP image parser. Attackers can execute arbitrary code by tricking users into opening malicious BMP files...

CVE-2021-46617

HIGH CVSS 7.8 Feb 18, 2022

This vulnerability allows remote attackers to execute arbitrary code on Bentley MicroStation CONNECT installations by tricking users into opening malicious TIF image files. The flaw exists in improper...

CVE-2021-46619

HIGH CVSS 7.8 Feb 18, 2022

This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious PDF files in Bentley MicroStation CONNECT. Attackers can exploit a buffer read overflow in...

CVE-2021-46621

HIGH CVSS 7.8 Feb 18, 2022

This is a double-free vulnerability in Bentley MicroStation CONNECT's JT file parser that allows remote code execution. Attackers can exploit it by tricking users into opening malicious JT files or vi...

CVE-2021-46625

HIGH CVSS 7.8 Feb 18, 2022

CVE-2021-46625 is a double-free vulnerability in Bentley View's JT file parser that allows remote code execution when a user opens a malicious JT file or visits a malicious webpage. Attackers can expl...

CVE-2021-46627

HIGH CVSS 7.8 Feb 18, 2022

This vulnerability in Bentley View allows remote attackers to execute arbitrary code by tricking users into opening malicious DXF files. The flaw exists in DXF file parsing where the software fails to...

CVE-2021-46631

HIGH CVSS 7.8 Feb 18, 2022

CVE-2021-46631 is a memory initialization vulnerability in Bentley View's TIF image parser that allows remote code execution when users open malicious TIF files or visit malicious web pages. This affe...

CVE-2021-46601

HIGH CVSS 7.8 Feb 18, 2022

This vulnerability in Bentley MicroStation CONNECT allows remote attackers to execute arbitrary code by tricking users into opening malicious JT files. The flaw exists in JT file parsing where the sof...

CVE-2021-46603

HIGH CVSS 7.8 Feb 18, 2022

This vulnerability allows remote attackers to execute arbitrary code by exploiting a heap-based buffer overflow in Bentley MicroStation CONNECT's J2K image parser. Attackers can achieve remote code ex...

CVE-2021-46605

HIGH CVSS 7.8 Feb 18, 2022

This vulnerability allows remote attackers to execute arbitrary code on affected Bentley MicroStation installations by tricking users into opening malicious BMP image files. The flaw exists in imprope...

CVE-2021-46609

HIGH CVSS 7.8 Feb 18, 2022

CVE-2021-46609 is a use-after-free vulnerability in Bentley MicroStation CONNECT's PDF parser that allows remote code execution. Attackers can exploit this by tricking users into opening malicious PDF...

CVE-2021-46612

HIGH CVSS 7.8 Feb 18, 2022

CVE-2021-46612 is an out-of-bounds read vulnerability in Bentley MicroStation CONNECT's PDF parser that allows remote code execution. Attackers can exploit it by tricking users into opening malicious ...

CVE-2021-46614

HIGH CVSS 7.8 Feb 18, 2022

This vulnerability in Bentley MicroStation CONNECT allows remote attackers to execute arbitrary code by tricking users into opening malicious J2K image files. The flaw is an out-of-bounds read during ...

CVE-2021-46584

HIGH CVSS 7.8 Feb 18, 2022

This vulnerability allows remote attackers to execute arbitrary code by tricking users into opening malicious J2K image files in Bentley MicroStation CONNECT. Attackers can exploit a buffer overflow i...

CVE-2021-46586

HIGH CVSS 7.8 Feb 18, 2022

This is a buffer overflow vulnerability in Bentley MicroStation CONNECT that allows remote code execution when users open malicious 3DS files. Attackers can exploit this to run arbitrary code with the...

CVE-2021-46588

HIGH CVSS 7.8 Feb 18, 2022

This is a use-after-free vulnerability in Bentley MicroStation CONNECT that allows remote code execution when parsing malicious JT files. Attackers can exploit it by tricking users into opening specia...

CVE-2021-46590

HIGH CVSS 7.8 Feb 18, 2022

This is a buffer overflow vulnerability in Bentley MicroStation CONNECT that allows remote code execution when users open malicious JT files. Attackers can exploit this to run arbitrary code with the ...

CVE-2022-28309

MEDIUM CVSS 5.5 Mar 29, 2023

CVE-2022-28309 is an out-of-bounds read vulnerability in Bentley View's 3DS file parser that allows remote attackers to disclose sensitive information. Users of Bentley View 10.16.02.022 who open mali...

CVE-2022-28312

MEDIUM CVSS 5.5 Mar 29, 2023

This vulnerability in Bentley MicroStation CONNECT allows remote attackers to disclose sensitive information by exploiting a buffer read overflow when parsing malicious 3DS files. Attackers can levera...