First published: Tue Mar 11 2025(Updated: )
A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected application is vulnerable to memory corruption while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current process.
Credit: productcert@siemens.com
Affected Software | Affected Version | How to fix |
---|---|---|
Siemens Teamcenter Visualization | <14.3.0.13 | |
Siemens Teamcenter Visualization | <2312.0009 | |
Siemens Teamcenter Visualization | <2406.0007 | |
Siemens Teamcenter Visualization | <2412.0002 | |
Siemens Tecnomatix Plant Simulation | <2302.0021 | |
Siemens Tecnomatix Plant Simulation | <2404.0010 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-23400 is classified as a high severity vulnerability.
To fix CVE-2025-23400, upgrade to the latest version of Teamcenter Visualization or Tecnomatix Plant Simulation as specified in the advisory.
CVE-2025-23400 affects all versions of Teamcenter Visualization prior to 14.3.0.13, 2312.0009, 2406.0007, 2412.0002, and Tecnomatix Plant Simulation prior to 2302.0021 and 2404.0010.
CVE-2025-23400 affects Siemens Teamcenter Visualization and Siemens Tecnomatix Plant Simulation.
Yes, patches are available in the form of updates to the latest versions of the impacted products.