CVE-2025-23399

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Mar 11, 2025
CWE ID 125

Summary

CVE-2025-23399 is a newly disclosed vulnerability affecting multiple versions of Teamcenter Visualization and Tecnomatix Plant Simulation, including V14.3, V2312, V2406, V2412, V2302, and V2404. The issue lies in the way these applications process WRL files. An out-of-bounds read vulnerability has been identified, enabling attackers to read data beyond the allocated memory limit. This could potentially lead to code execution in the context of the current process. Users of the affected versions are advised to update to the latest patches to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share