PT-2025-28399 · Siemens · Solid Edge

Published

2025-07-08

·

Updated

2025-07-08

·

CVE-2025-40741

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Solid Edge SE2025 versions prior to V225.0 Update 5
Description: A stack-based overflow issue has been identified in the affected applications while parsing specially crafted CFG files. This could allow an attacker to execute code in the context of the current process.
Recommendations: For versions prior to V225.0 Update 5, update to V225.0 Update 5 or later to resolve the issue. As a temporary workaround, consider restricting the processing of CFG files from untrusted sources until a patch is applied.

Fix

Stack Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-16081
CVE-2025-40741

Affected Products

Solid Edge