Siemens Simcenter Products Out-of-Bounds Read Vulnerability in NDB File Parsing

Vulnerability

A vulnerability allowing out-of-bounds read has been identified in Siemens Simcenter Femap and Simcenter Nastran, all versions prior to V2512. This vulnerability occurs while parsing specially crafted NDB files, potentially allowing an attacker to execute code in the context of the current process.

Impact

Exploitation of this vulnerability could lead to arbitrary code execution in the context of the current process.

Remediation

Users are advised to update to version V2512 or later. For Simcenter Femap, visit the Siemens Support page for the product. For Simcenter Nastran, also refer to the Siemens Support page for the product.

Added: Feb 10, 2026, 11:00 AM
Updated: Feb 10, 2026, 3:33 PM

Vulnerability Rating

Custom Algorithm
spread
2.4
impact
2.5
exploitability
3.6
remediation
7.9
relevance
2.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.