Siemens Simcenter Products Out-of-Bounds Read Vulnerability Allowing Code Execution

Vulnerability

A vulnerability exists in Siemens Simcenter Femap and Simcenter Nastran, all versions prior to V2512. The issue is an out-of-bounds read vulnerability that occurs while parsing specially crafted XDB files. This vulnerability could enable an attacker to execute code within the context of the current process.

Impact

Exploitation of this vulnerability could lead to arbitrary code execution in the context of the current process.

Remediation

Users are advised to update to version V2512 or later. For Simcenter Femap, visit the Siemens Support page for the product. For Simcenter Nastran, also refer to the Siemens Support page for the product.

Added: Feb 10, 2026, 11:03 AM
Updated: Feb 10, 2026, 3:34 PM

Vulnerability Rating

Custom Algorithm
spread
2.4
impact
5.0
exploitability
4.2
remediation
7.9
relevance
2.9
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.