A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 5). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files.
This could allow an attacker to execute code in the context of the current process.
Metrics
Affected Vendors & Products
References
History
Thu, 21 Aug 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Siemens
Siemens solid Edge |
|
| CPEs | cpe:2.3:a:siemens:solid_edge:*:*:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge:se2025:-:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge:se2025:update_1:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge:se2025:update_2:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge:se2025:update_3:*:*:*:*:*:* cpe:2.3:a:siemens:solid_edge:se2025:update_4:*:*:*:*:*:* |
|
| Vendors & Products |
Siemens
Siemens solid Edge |
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Tue, 08 Jul 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 08 Jul 2025 10:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 5). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process. | |
| Weaknesses | CWE-125 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: siemens
Published: 2025-07-08T10:34:57.801Z
Updated: 2025-07-08T13:23:28.327Z
Reserved: 2025-04-16T08:39:30.029Z
Link: CVE-2025-40739
Updated: 2025-07-08T13:23:23.932Z
Status : Analyzed
Published: 2025-07-08T11:15:30.380
Modified: 2025-08-21T14:42:04.330
Link: CVE-2025-40739
No data.