PT-2026-25703 · Dassault Systèmes · Solidworks Desktop
Simón Marcote
·
Published
2026-03-16
·
Updated
2026-03-16
·
CVE-2026-3476
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
SOLIDWORKS Desktop versions 2025 through 2026
Description
A code injection issue exists in SOLIDWORKS Desktop. Successful exploitation while opening a specially crafted file could allow an attacker to execute arbitrary code on the user's machine.
Recommendations
Versions prior to 2025 and after 2026 are not affected.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Solidworks Desktop