Out of Bounds Write Vulnerability in Simcenter Femap by Siemens
CVE-2025-40762
7.3HIGH
Key Information:
- Vendor
Siemens
- Vendor
- CVE Published:
- 12 August 2025
What is CVE-2025-40762?
A security issue has been discovered in Simcenter Femap versions prior to V2406.0003 and V2412.0002. The vulnerability arises from improper handling of specially crafted STP files, which could lead to an out of bounds write condition. This flaw can allow attackers to execute arbitrary code within the application context, potentially compromising system integrity. Users are advised to update their software to mitigate associated risks.
Affected Version(s)
Simcenter Femap V2406 0
Simcenter Femap V2412 0
References
CVSS V4
Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown
Timeline
Vulnerability published
Vulnerability Reserved