Out of Bounds Write Vulnerability in Siemens Teamcenter and Tecnomatix Products
CVE-2025-23396
7.3HIGH
Key Information:
- Vendor
- Siemens
- Status
- Vendor
- CVE Published:
- 11 March 2025
Summary
An out of bounds write vulnerability exists in multiple versions of Siemens Teamcenter Visualization and Tecnomatix Plant Simulation, which arises when parsing a specially crafted WRL file. This vulnerability may enable attackers to execute arbitrary code in the context of the current process, potentially compromising system integrity and security. Users should review their versions and apply necessary patches to mitigate this security risk.
Affected Version(s)
Teamcenter Visualization V14.3 0
Teamcenter Visualization V2312 0
Teamcenter Visualization V2406 0
References
CVSS V4
Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown
Timeline
Vulnerability published
Vulnerability Reserved