CVE-2026-22923

7.8

Siemens · NX

Siemens NX contains a stack-based buffer overflow vulnerability in the PDF export process, allowing local attackers to achieve arbitrary code execution.

Executive summary

A stack-based buffer overflow in Siemens NX allows local attackers to execute arbitrary code during PDF export operations, posing a significant risk to system integrity.

Vulnerability

The application contains a stack-based buffer overflow (CWE-121) within the PDF export functionality. This flaw allows a local, unauthenticated attacker with the ability to influence the export process to trigger memory corruption that may lead to arbitrary code execution.

Business impact

Successful exploitation of this vulnerability grants an attacker the ability to execute arbitrary code with the privileges of the application user. Given the CVSS score of 7.8, this represents a high-severity risk that could lead to full system compromise, data exfiltration, or the installation of persistent malicious software on engineering workstations.

Remediation

Immediate Action: Update all instances of Siemens NX and NX (Managed Mode) to version V2512 or later to address the vulnerable code.

Proactive Monitoring: Review system logs for unusual process crashes or unauthorized file modifications associated with the NX export module.

Compensating Controls: Restrict local access to systems running affected versions of Siemens NX and ensure that users operate with the principle of least privilege to limit the potential impact of code execution.

Exploitation status

Public Exploit Available: Unknown

Analyst recommendation

The severity of this vulnerability necessitates immediate attention, particularly in industrial and engineering environments where Siemens NX is deployed. Organizations should prioritize patching to version V2512 to eliminate the stack-based buffer overflow risk and prevent potential local code execution attacks.

More Siemens CVEs

Sources