Security & Threat Intelligence · 13.08.2026, 16:55 UTC
Siemens Simcenter Femap
| Schweregrad | info |
|---|---|
| CVE | ↗ ↗ |
| Kategorie | Security & Threat Intelligence |
| Quelle | CISA Advisories ↗ |
| Veröffentlicht | 13.08.2026 UTC |
Sicherheitsmeldung mit Schweregrad noch nicht bewertet. Betroffene Kennungen: CVE-2026-59700, CVE-2026-59701. Technische Details im Tab „Originaltext“; empfohlene Schritte in der Checkliste.
View CSAF Summary Simcenter Femap contains two file parsing vulnerabilities that could be triggered when the application reads files in BMP file format. If a user is tricked to open a malicious file with the affected application, this could lead the application to crash or potentially lead to arbitrary code execution. Siemens has released a new version for Simcenter Femap and recommends to update to the latest version. The following versions of Siemens Simcenter Femap are affected:
Simcenter Femap vers:intdot/<2606.0001 (CVE-2026-59700, CVE-2026-59701)
CVSS Vendor Equipment Vulnerabilities
v3 7.8 Siemens Siemens Simcenter Femap Out-of-bounds Read
Background
Critical Infrastructure Sectors: Critical Manufacturing Countries/Areas Deployed: Worldwide Company Headquarters Location: Germany
Vulnerabilities
Expand All +
CVE-2026-59700
The affected applications contains an out of bounds read vulnerability while parsing specially crafted BMP files. This could allow an attacker to execute code in the context of the current process. View CVE Details
Affected Products Siemens Simcenter Femap
Vendor:Siemens Product Version:Simcenter Femap < V2606.0001 Product Status:known_affected
Remediations Vendor fixUpdate to V2606.0001 or later versionhttps://support.sw.siemens.com/product/275652363/
Relevant CWE: CWE-125 Out-of-bounds Read
Metrics
CVSS Version Base Score Base Severity Vector String
3.1 7.8 HIGH CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVE-2026-59701
The affected applications contains an out of bounds read vulnerability while parsing specially crafted BMP …