CVE-2026-23715: High severity Siemens Simcenter Femap vulnerability
A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512). The affected applications contains an out of bounds write vulnerability while parsing specially crafted XDB files. This could allow an attacker to execute code in the context of the current process.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-23715?
CVE-2026-23715 is classified as a high-severity vulnerability due to its potential for enabling code execution through out of bounds writes.
How do I fix CVE-2026-23715?
To mitigate CVE-2026-23715, users should upgrade to Simcenter Femap and Simcenter Nastran version V2512 or later.
What applications are affected by CVE-2026-23715?
CVE-2026-23715 affects all versions of Simcenter Femap and Simcenter Nastran prior to V2512.
What kind of attack can exploit CVE-2026-23715?
An attacker can exploit CVE-2026-23715 by crafting a specially designed XDB file that triggers an out of bounds write.
Is there a workaround for CVE-2026-23715 if I can't upgrade?
Currently, there are no known workarounds for CVE-2026-23715, and the recommended action is to update to the latest version.