Security & Threat Intelligence · 18.08.2026, 20:25 UTC
Siemens Simcenter Nastran
| Schweregrad | info |
|---|---|
| CVE | ↗ |
| Kategorie | Security & Threat Intelligence |
| Quelle | CISA Advisories ↗ |
| Veröffentlicht | 18.08.2026 UTC |
Sicherheitsmeldung mit Schweregrad noch nicht bewertet. Betroffene Kennungen: CVE-2026-59086. Technische Details im Tab „Originaltext“; empfohlene Schritte in der Checkliste.
View CSAF Summary Simcenter Nastran is affected by a stack overflow vulnerability that could be triggered when an application binary reads arbitrary string as a file argument. If a user is tricked to run one of the impacted application binary with a malicious string, an attacker could leverage the vulnerability to perform remote code execution in the context of the current process. Siemens has released new versions for the affected products and recommends to update to the latest versions. The following versions of Siemens Simcenter Nastran are affected:
Simcenter Femap vers:intdot/<2606 (CVE-2026-59086) Simcenter Nastran vers:intdot/<2606 (CVE-2026-59086)
CVSS Vendor Equipment Vulnerabilities
v3 7.8 Siemens Siemens Simcenter Nastran Stack-based Buffer Overflow
Background
Critical Infrastructure Sectors: Critical Manufacturing, Defense Industrial Base, Energy, Healthcare and Public Health, Transportation Systems Countries/Areas Deployed: Worldwide Company Headquarters Location: Germany
Vulnerabilities
Expand All +
CVE-2026-59086
The affected applications contain a stack overflow vulnerability while parsing specially strings as argument for one of the application binaries. This could allow an attacker to execute code in the context of the current process. View CVE Details
Affected Products Siemens Simcenter Nastran
Vendor:Siemens Product Version:Simcenter Femap < V2606, Simcenter Nastran < V2606 Product Status:known_affected
Remediations Vendor fixUpdate to V2606 or later versionhttps://support.sw.siemens.com/product/275652363/
Relevant CWE: CWE-121 Stack-based …