Microstation
Vendor:
First CVE: Sep 7, 2012 · Active for 13 years
211
Total CVEs
More Total CVEs than 99% of tracked products
52.8
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
6.9
Avg CVSS
Higher Avg CVSS than 40% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Microstation over time
Volume of CVEsAvg CVSS Base Score
First CVE
Sep 7, 2012
13 years ago
Most Recent CVE
May 3, 2024
811 days ago
CVE Severity & Scoring
Microstation211 CVEs
13%
14%
73%
All CVEs352,101 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local210 (99.5%)
Network0 (0.0%)
Unknown1 (0.5%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low210 (99.5%)
High0 (0.0%)
Unknown1 (0.5%)
User Interaction
None0 (0.0%)
Unknown1 (0.5%)
Required210 (99.5%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None210 (99.5%)
Unknown1 (0.5%)
Top CVEs
Signals from CVEs in this product scope (211 CVEs).
211 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-46604HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80. User interaction is required to exploit t | Feb 18, 2022 | 7.8 | 26 | NO | NO |
CVE-2022-28310HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.02.034. User interaction is required to exploit | Mar 29, 2023 | 7.8 | 25 | NO | NO |
CVE-2022-28306HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.02.034. User interaction is required to exploit | Mar 29, 2023 | 7.8 | 25 | NO | NO |
CVE-2022-28305HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.02.034. User interaction is required to exploit | Mar 29, 2023 | 7.8 | 25 | NO | NO |
CVE-2022-42901HIGH Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds and stack overflow issues when opening crafted XMT files. Exploiting these issues could le | Oct 13, 2022 | 7.8 | 25 | NO | NO |
CVE-2022-42900HIGH Bentley MicroStation and MicroStation-based applications may be affected by out-of-bounds read issues when opening crafted FBX files. Exploiting these issues could lead to informat | Oct 13, 2022 | 7.8 | 25 | NO | NO |
CVE-2021-46656HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.75. User interaction is required to exploit this vulnerabilit | Feb 18, 2022 | 7.8 | 25 | NO | NO |
CVE-2021-46645HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80. User interaction is required to exploit t | Feb 18, 2022 | 7.8 | 25 | NO | NO |
CVE-2021-46644HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley MicroStation CONNECT 10.16.0.80. User interaction is required to exploit t | Feb 18, 2022 | 7.8 | 25 | NO | NO |
CVE-2021-46641HIGH This vulnerability allows remote attackers to execute arbitrary code on affected installations of Bentley View 10.15.0.75. User interaction is required to exploit this vulnerabilit | Feb 18, 2022 | 7.8 | 25 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (211 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (211 CVEs).
Media Mentions
Signals from CVEs in this product scope (211 CVEs).
Top CNAs Publishing CVEs For Microstation
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 7.1 | 1 | 6.9 | 0.9% | 0 | 0 |