A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected application does not properly restrict access to the file deletion functionality.
This could allow an unauthorized attacker to delete files even when access to the system should be prohibited, resulting in potential data loss or unauthorized modification of system files.
Metrics
Affected Vendors & Products
References
History
Tue, 23 Sep 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Siemens
Siemens tecnomatix Plant Simulation |
|
| CPEs | cpe:2.3:a:siemens:tecnomatix_plant_simulation:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Siemens
Siemens tecnomatix Plant Simulation |
Fri, 11 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 11 Mar 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 11 Mar 2025 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected application does not properly restrict access to the file deletion functionality. This could allow an unauthorized attacker to delete files even when access to the system should be prohibited, resulting in potential data loss or unauthorized modification of system files. | |
| Weaknesses | CWE-552 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: siemens
Published: 2025-03-11T09:48:19.594Z
Updated: 2025-03-11T14:22:07.380Z
Reserved: 2025-02-06T12:40:49.316Z
Link: CVE-2025-25266
Updated: 2025-03-11T14:22:02.787Z
Status : Analyzed
Published: 2025-03-11T10:15:17.850
Modified: 2025-09-23T15:28:18.417
Link: CVE-2025-25266
No data.