SOLIDWORKS eDrawings Use of Uninitialized Variable Vulnerability Allowing Arbitrary Code Execution

Vulnerability

A vulnerability allowing the use of uninitialized variables has been identified in the EPRT file reading process of SOLIDWORKS eDrawings. This issue affects releases from SOLIDWORKS Desktop 2025 to 2026. An attacker could exploit this vulnerability to execute arbitrary code by opening a specially crafted EPRT file.

Impact

Exploitation of this vulnerability could lead to arbitrary code execution on the affected system.

Remediation

Users can refer to the 3DS Support Knowledge Base article QA00000443490 for remediation information.

Added: Feb 16, 2026, 2:22 PM
Updated: Feb 16, 2026, 2:22 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
5.6
remediation
0.0
relevance
3.1
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.