CVE-2025-25267

Severity
6.9MEDIUM
EPSS
0.0%
top 89.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 11

Description

A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected application does not properly restrict the scope of files accessible to the simulation model. This could allow an unauthorized attacker to compromise the confidentiality of the system.

CVSS vector

CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

Affected Packages3 packages

🔴Vulnerability Details

2
GHSA
GHSA-prc6-9xc4-p6v8: A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V23022025-03-11
CVEList
CVE-2025-25267: A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V23022025-03-11
CVE-2025-25267 (MEDIUM CVSS 6.9) | A vulnerability has been identified | cvebase.io