Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-48897 | An authorization bypass through user-controlled key vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x allows an authenticated attacker to access some unauthorized data. |
| Link | Providers |
|---|---|
| https://www.3ds.com/vulnerability/advisories |
|
Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Wed, 16 Oct 2024 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 16 Oct 2024 11:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authorization bypass through user-controlled key vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x allows an authenticated attacker to access some unauthorized data. | |
| Title | Authorization Bypass Through User-Controlled Key vulnerability affecting 3DSwym in 3DSwymer on Release 3DEXPERIENCE R2024x | |
| Weaknesses | CWE-639 | |
| References |
| |
| Metrics |
cvssV3_1
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: 3DS
Published:
Updated: 2024-10-16T16:11:10.021Z
Reserved: 2024-08-21T11:31:17.911Z
Link: CVE-2024-8040
Updated: 2024-10-16T16:11:05.859Z
Status : Deferred
Published: 2024-10-16T12:15:09.013
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-8040
No data.
OpenCVE Enrichment
No data.
EUVD