CVE-2026-23715
7.8Siemens · Simcenter Femap, Simcenter Nastran
Siemens Simcenter Femap and Nastran are vulnerable to an out of bounds write when parsing crafted XDB files, potentially allowing arbitrary code execution in the context of the current process.
Executive summary
Siemens Simcenter Femap and Nastran are affected by an out of bounds write vulnerability that could allow an attacker to achieve remote code execution through malicious file parsing.
Vulnerability
This is an out of bounds write vulnerability (CWE-787) triggered when the application parses a specially crafted XDB file. Based on the CVSS vector, this requires user interaction and local access to execute, but it allows for potential code execution in the context of the user process.
Business impact
The ability for an attacker to execute arbitrary code poses a significant risk to data integrity and system confidentiality. Given the CVSS score of 7.8, this vulnerability is classified as High severity, as it could allow an attacker to gain control over the engineering workstations running these simulations, leading to intellectual property theft or operational disruption.
Remediation
Immediate Action: Update all instances of Simcenter Femap and Simcenter Nastran to version V2512 or later as specified in the Siemens security advisory.
Proactive Monitoring: Monitor engineering workstations for unexpected process crashes or anomalous file access patterns when handling XDB files.
Compensating Controls: Restrict the opening of XDB files from untrusted or unverified sources until the software has been successfully updated to the patched version.
Exploitation status
Public Exploit Available: No (exploit_available: false)
Analyst recommendation
Organizations utilizing Siemens Simcenter software must prioritize the transition to version V2512. Given the technical nature of this flaw, administrators should ensure that all users are aware of the risks associated with opening untrusted simulation files, and the patch should be applied across all workstations to fully remediate the underlying memory corruption risk.