CVE-2026-1283
Heap-based Buffer Overflow vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Release SOLIDWORKS Desktop 2026
CVSS Score
7.8
EPSS Score
0.0%
EPSS Percentile
0th
A Heap-based Buffer Overflow vulnerability affecting the EPRT file reading procedure in SOLIDWORKS eDrawings from Release SOLIDWORKS Desktop 2025 through Release SOLIDWORKS Desktop 2026 could allow an attacker to execute arbitrary code while opening a specially crafted EPRT file.
| CWE | CWE-122 |
| Vendor | dassault systèmes |
| Product | solidworks edrawings |
| Published | Jan 26, 2026 |
| Last Updated | Feb 26, 2026 |
Stay Ahead of the Next One
Get instant alerts for dassault systèmes solidworks edrawings
Be the first to know when new high vulnerabilities affecting dassault systèmes solidworks edrawings are published — delivered to Slack, Telegram or Discord.
Get Free Alerts →
Free · No credit card · 60 sec setup
CVSS v3 Breakdown
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H Attack Vector
Local
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
Affected Versions
Dassault Systèmes / SOLIDWORKS eDrawings
Release SOLIDWORKS Desktop 2025 SP0 ≤ Release SOLIDWORKS Desktop 2025 SP5 Release SOLIDWORKS Desktop 2026 SP0