PT-2025-20859 · Siemens · Teamcenter Visualization

Published

2025-05-13

·

Updated

2025-07-15

·

CVE-2025-32454

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Teamcenter Visualization versions prior to V14.3.0.14 Teamcenter Visualization versions prior to V2312.0010 Teamcenter Visualization versions prior to V2406.0008 Teamcenter Visualization versions prior to V2412.0004
Description: A vulnerability has been identified in the affected applications, which contain an out of bounds read past the end of an allocated structure while parsing specially crafted WRL files. This could allow an attacker to execute code in the context of the current process.
Recommendations: For versions prior to V14.3.0.14, update to V14.3.0.14 or later. For versions prior to V2312.0010, update to V2312.0010 or later. For versions prior to V2406.0008, update to V2406.0008 or later. For versions prior to V2412.0004, update to V2412.0004 or later.

Fix

RCE

Out of bounds Read

Weakness Enumeration

Related Identifiers

BDU:2025-06607
CVE-2025-32454

Affected Products

Teamcenter Visualization