A vulnerability has been identified in Simcenter Femap V2401 (All versions < V2401.0003), Simcenter Femap V2406 (All versions < V2406.0002). The affected application contains a memory corruption vulnerability while parsing specially crafted .NEU files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-25443)
Attack Parameters
Impact Assessment
CVSS Vector v4.0
Weakness Type (CWE)
Vulnerable Products 2
| Configuration | From (including) | Up to (excluding) |
|---|---|---|
|
Siemens Simcenter_Femap
cpe:2.3:a:siemens:simcenter_femap:*:*:*:*:*:*:*:*
|
2401.0
|
2401.0003
|
|
Siemens Simcenter_Femap
cpe:2.3:a:siemens:simcenter_femap:*:*:*:*:*:*:*:*
|
2406.0
|
2406.0002
|