PT-2026-50580 · Ptc · Flexplm+1

Publicado

2026-06-18

·

Atualizado

2026-06-18

·

CVE-2026-12569

CVSS v4.0

9.3

Crítica

VetorAV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L/AU:Y/R:U/V:C/U:Red
A critical remote code execution (RCE) vulnerability has been reported in PTC Windchill PDMlink and PTC FlexPLM. The vulnerability may be exploited through the deserialization of untrusted data.  * This advisory also applies to all CPS versions
  • The identified vulnerability also impacts Windchill and FlexPLM releases prior to 11.0 M030

Correção

RCE

Deserialization of Untrusted Data

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-12569

Produtos afetados

Flexplm
Windchill Pdmlink