Siemens Simcenter Femap vulnerabilities
84 known vulnerabilities affecting siemens/simcenter_femap.
Total CVEs
84
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH81MEDIUM1LOW2
Vulnerabilities
Page 2 of 5
CVE-2021-46156P3HIGHCVSS 7.8v2020.2v2021.12022-02-09
CVE-2021-46156 [HIGH] CWE-787 CVE-2021-46156: A vulnerability has been identified in Simcenter Femap V2020.2 (All versions), Simcenter Femap V2021
A vulnerability has been identified in Simcenter Femap V2020.2 (All versions), Simcenter Femap V2021.1 (All versions). Affected application contains an out of bounds write past the end of an allocated structure while parsing specially crafted NEU files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-14684)
nvd
CVE-2024-32062P3HIGHCVSS 7.8fixed in 2406.0000fixed in V24062024-05-14
CVE-2024-32062 [HIGH] CWE-843 CVE-2024-32062: A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applicat
A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected application contains a type confusion vulnerability while parsing IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21568)
nvd
CVE-2024-32058P3HIGHCVSS 7.8fixed in 2406.0000fixed in V24062024-05-14
CVE-2024-32058 [HIGH] CWE-119 CVE-2024-32058: A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applicat
A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected application is vulnerable to memory corruption while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21563)
nvd
CVE-2024-32057P3HIGHCVSS 7.8fixed in 2406.0000fixed in V24062024-05-14
CVE-2024-32057 [HIGH] CWE-843 CVE-2024-32057: A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applicat
A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected application contains a type confusion vulnerability while parsing IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21562)
nvd
CVE-2024-32063P3HIGHCVSS 7.8fixed in 2406.0000fixed in V24062024-05-14
CVE-2024-32063 [HIGH] CWE-843 CVE-2024-32063: A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applicat
A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected application contains a type confusion vulnerability while parsing IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21573)
nvd
CVE-2024-24921P3HIGHCVSS 7.8fixed in 2401.0000fixed in V2401.00002024-02-13
CVE-2024-24921 [HIGH] CWE-119 CVE-2024-24921: A vulnerability has been identified in Simcenter Femap (All versions < V2401.0000). The affected app
A vulnerability has been identified in Simcenter Femap (All versions < V2401.0000). The affected application is vulnerable to memory corruption while parsing specially crafted Catia MODEL files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21712)
nvd
CVE-2025-40764P3HIGHCVSS 7.8≥ 2406.0000, < 2406.0003≥ 2412.0000, < 2412.00022025-08-12
CVE-2025-40764 [HIGH] CWE-125 CVE-2025-40764: A vulnerability has been identified in Simcenter Femap V2406 (All versions < V2406.0003), Simcenter
A vulnerability has been identified in Simcenter Femap V2406 (All versions < V2406.0003), Simcenter Femap V2412 (All versions < V2412.0002). The affected applications contains an out of bounds read vulnerability while parsing specially crafted BMP files. This could allow an attacker to execute code in the context of the current process.
nvd
CVE-2026-23715P3HIGHCVSS 7.3fixed in 2512.0000fixed in V25122026-02-10
CVE-2026-23715 [HIGH] CWE-787 CVE-2026-23715: A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (Al
A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512). The affected applications contains an out of bounds write vulnerability while parsing specially crafted XDB files. This could allow an attacker to execute code in the context of the current process.
nvd
CVE-2026-23719P3HIGHCVSS 7.3fixed in 2512.0000fixed in V25122026-02-10
CVE-2026-23719 [HIGH] CWE-122 CVE-2026-23719: A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (Al
A vulnerability has been identified in Simcenter Femap (All versions < V2512), Simcenter Nastran (All versions < V2512). The affected application is vulnerable to heap-based buffer overflow while parsing specially crafted NDB files. This could allow an attacker to execute code in the context of the current process.
nvd
CVE-2021-27399P3HIGHCVSS 7.8fixed in 2020.2v2020.2+1 more2021-06-08
CVE-2021-27399 [HIGH] CVE-2021-27399: A vulnerability has been identified in Simcenter Femap 2020.2 (All versions < V2020.2.MP3), Simcente
A vulnerability has been identified in Simcenter Femap 2020.2 (All versions < V2020.2.MP3), Simcenter Femap 2021.1 (All versions < V2021.1.MP3). The femap.exe application lacks proper validation of user-supplied data when parsing FEMAP files. This could result in an out of bounds write past the end of an allocated structure, a different vulnerability than CVE
nvd
CVE-2021-27387P3HIGHCVSS 7.8fixed in 2020.2v2020.2+1 more2021-06-08
CVE-2021-27387 [HIGH] CWE-787 CVE-2021-27387: A vulnerability has been identified in Simcenter Femap 2020.2 (All versions < V2020.2.MP3), Simcente
A vulnerability has been identified in Simcenter Femap 2020.2 (All versions < V2020.2.MP3), Simcenter Femap 2021.1 (All versions < V2021.1.MP3). The femap.exe application lacks proper validation of user-supplied data when parsing FEMAP files. This could result in an out of bounds write past the end of an allocated structure, a different vulnerability
nvd
CVE-2021-46162P3HIGHCVSS 7.8fixed in 2022.1.1vAll versions < V2022.1.12022-02-22
CVE-2021-46162 [HIGH] CWE-787 CVE-2021-46162: A vulnerability has been identified in Simcenter Femap (All versions < V2022.1.1). Affected applicat
A vulnerability has been identified in Simcenter Femap (All versions < V2022.1.1). Affected application contains an out of bounds write past the end of an allocated structure while parsing specially crafted NEU files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-15048)
nvd
CVE-2022-28663P3HIGHCVSS 7.8fixed in 2022.1.2vAll versions < V2022.1.22022-04-12
CVE-2022-28663 [HIGH] CWE-787 CVE-2022-28663: A vulnerability has been identified in Simcenter Femap (All versions < V2022.1.2). The affected appl
A vulnerability has been identified in Simcenter Femap (All versions < V2022.1.2). The affected application contains an out of bounds write past the end of an allocated structure while parsing specially crafted .NEU files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-15592)
nvd
CVE-2022-34748P3HIGHCVSS 7.8fixed in 2022.2vAll versions < V2022.22022-07-12
CVE-2022-34748 [HIGH] CWE-787 CVE-2022-34748: A vulnerability has been identified in Simcenter Femap (All versions < V2022.2). The affected applic
A vulnerability has been identified in Simcenter Femap (All versions < V2022.2). The affected application contains an out of bounds write past the end of an allocated structure while parsing specially crafted X_T files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-17293)
nvd
CVE-2022-34465P3HIGHCVSS 7.8≥ 2022.1.0, < 2022.1.3≥ 2022.2.0, < 2022.2.22022-07-12
CVE-2022-34465 [HIGH] CWE-125 CVE-2022-34465: A vulnerability has been identified in Parasolid V33.1 (All versions < V33.1.264), Parasolid V34.0 (
A vulnerability has been identified in Parasolid V33.1 (All versions < V33.1.264), Parasolid V34.0 (All versions < V34.0.250), Parasolid V34.1 (All versions < V34.1.233), Simcenter Femap V2022.1 (All versions < V2022.1.3), Simcenter Femap V2022.2 (All versions < V2022.2.2). The affected application contains an out of bounds read past the end of an all
nvd
CVE-2022-27653P3HIGHCVSS 7.8fixed in 2022.2vAll versions < V2022.22022-05-20
CVE-2022-27653 [HIGH] CWE-787 CVE-2022-27653: A vulnerability has been identified in Simcenter Femap (All versions < V2022.2). The affected applic
A vulnerability has been identified in Simcenter Femap (All versions < V2022.2). The affected application contains an out of bounds write past the end of an allocated structure while parsing specially crafted .NEU files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-15594)
nvd
CVE-2024-27907P3HIGHCVSS 7.8fixed in 2306.0000fixed in V2306.00002024-03-12
CVE-2024-27907 [HIGH] CWE-787 CVE-2024-27907: A vulnerability has been identified in Simcenter Femap (All versions < V2306.0000). The affected app
A vulnerability has been identified in Simcenter Femap (All versions < V2306.0000). The affected application contains an out of bounds write past the end of an allocated buffer while parsing a specially crafted Catia MODEL file. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-22051)
nvd
CVE-2024-32059P3HIGHCVSS 7.8fixed in 2406.0000fixed in V24062024-05-14
CVE-2024-32059 [HIGH] CWE-125 CVE-2024-32059: A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applicat
A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21564)
nvd
CVE-2024-32066P3HIGHCVSS 7.8fixed in 2406.0000fixed in V24062024-05-14
CVE-2024-32066 [HIGH] CWE-125 CVE-2024-32066: A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applicat
A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21578)
nvd
CVE-2024-32064P3HIGHCVSS 7.8fixed in 2406.0000fixed in V24062024-05-14
CVE-2024-32064 [HIGH] CWE-125 CVE-2024-32064: A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applicat
A vulnerability has been identified in Simcenter Femap (All versions < V2406). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted IGS files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-21575)
nvd