CVE-2026-2273: Code Injection
CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exist that could cause execution of untrusted commands on the engineering workstation which could result in a limited compromise of the workstation and a potential loss of Confidentiality, Integrity and Availability of the subsequent system when an authenticated user opens a malicious project file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-2273?
CVE-2026-2273 has a high severity rating of 7.2 according to the CVSS scoring system.
What types of systems are affected by CVE-2026-2273?
CVE-2026-2273 affects engineering workstations that may execute untrusted commands due to improper code generation control.
How can I mitigate CVE-2026-2273?
To mitigate CVE-2026-2273, it is recommended to implement input validation and limit code execution permissions on affected systems.
What are the potential impacts of CVE-2026-2273?
CVE-2026-2273 could lead to a limited compromise of the workstation as well as potential loss of confidentiality, integrity, and availability.
Is there a patch available for CVE-2026-2273?
Please check with the vendor for any available patches or updates to address CVE-2026-2273.