CVE-2025-6973
7.8Dassault Systèmes · SOLIDWORKS eDrawings
A Use After Free vulnerability in the JT file reading procedure of SOLIDWORKS eDrawings allows an attacker to execute arbitrary code via a specially crafted file.
Executive summary
A critical Use After Free vulnerability in SOLIDWORKS eDrawings 2025 allows local attackers to execute arbitrary code by enticing a user to open a malicious JT file.
Vulnerability
The software contains a Use After Free flaw (CWE-416) within its JT file parsing logic. An unauthenticated attacker can trigger memory corruption leading to arbitrary code execution if a user is tricked into opening a specially crafted JT file.
Business impact
Successful exploitation allows an attacker to gain the same execution privileges as the user running the application, potentially leading to full system compromise. With a CVSS score of 7.8, this flaw represents a significant risk to workstations, as it could facilitate lateral movement or data theft following a successful file-based attack.
Remediation
Immediate Action: Update to the latest version of SOLIDWORKS eDrawings as provided by the vendor security advisory to patch the JT file parsing library.
Proactive Monitoring: Monitor endpoint logs for abnormal application crashes or unexpected child processes spawned by the eDrawings executable.
Compensating Controls: Implement file integrity monitoring and restrict the opening of untrusted JT files from external or unverified sources until patches are fully deployed.
Exploitation status
Public Exploit Available: Unknown
Analyst recommendation
Given the potential for arbitrary code execution, organizations should prioritize updating all instances of SOLIDWORKS eDrawings 2025. Users should be cautioned against opening JT files from untrusted sources until the recommended vendor patches are applied across the environment.