High severityNVD Advisory· Published May 12, 2026· Updated May 12, 2026
CVE-2025-12659
CVE-2025-12659
Description
The affected applications contains a memory corruption vulnerability while parsing specially crafted IPT files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-27349, ZDI-CAN-27389)
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
3- ZDI-26-316: Siemens Simcenter Femap IPT File Parsing Memory Corruption Remote Code Execution VulnerabilityZero Day Initiative · May 12, 2026
- ZDI-26-317: Siemens Simcenter Femap IPT File Parsing Memory Corruption Remote Code Execution VulnerabilityZero Day Initiative · May 12, 2026
- Siemens Simcenter FemapCISA Alerts