CVE-2025-40829: High severity Siemens Simcenter Femap vulnerability
A vulnerability has been identified in Simcenter Femap (All versions < V2512). The affected applications contains an uninitialized memory vulnerability while parsing specially crafted SLDPRT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-27146)
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-40829?
CVE-2025-40829 is considered a critical vulnerability due to its potential to allow arbitrary code execution.
How do I fix CVE-2025-40829?
To fix CVE-2025-40829, update your Simcenter Femap application to version V2512 or later.
What type of files are involved in CVE-2025-40829?
CVE-2025-40829 involves specially crafted SLDPRT files that trigger the uninitialized memory vulnerability.
Can CVE-2025-40829 be exploited remotely?
CVE-2025-40829 could potentially be exploited locally by an attacker who has access to the affected system.
Which versions of Simcenter Femap are affected by CVE-2025-40829?
All versions of Simcenter Femap prior to V2512 are susceptible to CVE-2025-40829.