
CVE-2025-27438
https://notcve.org/view.php?id=CVE-2025-27438
11 Mar 2025 — A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected applications contain an out of bounds read past the end of an allocated structure while parsin... • https://cert-portal.siemens.com/productcert/html/ssa-050438.html • CWE-125: Out-of-bounds Read •

CVE-2025-23402
https://notcve.org/view.php?id=CVE-2025-23402
11 Mar 2025 — A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected applications contain a use-after-free vulnerability that could be triggered while parsing spec... • https://cert-portal.siemens.com/productcert/html/ssa-050438.html • CWE-416: Use After Free •

CVE-2025-23401
https://notcve.org/view.php?id=CVE-2025-23401
11 Mar 2025 — A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected applications contain an out of bounds read past the end of an allocated structure while parsin... • https://cert-portal.siemens.com/productcert/html/ssa-050438.html • CWE-125: Out-of-bounds Read •

CVE-2025-23400
https://notcve.org/view.php?id=CVE-2025-23400
11 Mar 2025 — A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected application is vulnerable to memory corruption while parsing specially crafted WRL files. This... • https://cert-portal.siemens.com/productcert/html/ssa-050438.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2025-23399
https://notcve.org/view.php?id=CVE-2025-23399
11 Mar 2025 — A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected applications contain an out of bounds read past the end of an allocated structure while parsin... • https://cert-portal.siemens.com/productcert/html/ssa-050438.html • CWE-125: Out-of-bounds Read •

CVE-2025-23398
https://notcve.org/view.php?id=CVE-2025-23398
11 Mar 2025 — A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected application is vulnerable to memory corruption while parsing specially crafted WRL files. This... • https://cert-portal.siemens.com/productcert/html/ssa-050438.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2025-23397
https://notcve.org/view.php?id=CVE-2025-23397
11 Mar 2025 — A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected application is vulnerable to memory corruption while parsing specially crafted WRL files. This... • https://cert-portal.siemens.com/productcert/html/ssa-050438.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2025-23396
https://notcve.org/view.php?id=CVE-2025-23396
11 Mar 2025 — A vulnerability has been identified in Teamcenter Visualization V14.3 (All versions < V14.3.0.13), Teamcenter Visualization V2312 (All versions < V2312.0009), Teamcenter Visualization V2406 (All versions < V2406.0007), Teamcenter Visualization V2412 (All versions < V2412.0002), Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected applications contain an out of bounds write vulnerability when parsing a specially crafted WRL... • https://cert-portal.siemens.com/productcert/html/ssa-050438.html • CWE-787: Out-of-bounds Write •

CVE-2025-23363
https://notcve.org/view.php?id=CVE-2025-23363
11 Feb 2025 — A vulnerability has been identified in Teamcenter (All versions < V14.3.0.0). The SSO login service of affected applications accepts user-controlled input that could specify a link to an external site. This could allow an attacker to redirect the legitimate user to an attacker-chosen URL to steal valid session data. For a successful exploit, the legitimate user must actively click on an attacker-crafted link. A vulnerability has been identified in Teamcenter V14.1 (All versions), Teamcenter V14.2 (All versi... • https://cert-portal.siemens.com/productcert/html/ssa-656895.html • CWE-601: URL Redirection to Untrusted Site ('Open Redirect') •

CVE-2024-53242 – Siemens Tecnomatix Plant Simulation WRL File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability
https://notcve.org/view.php?id=CVE-2024-53242
10 Dec 2024 — A vulnerability has been identified in Teamcenter Visualization V14.2 (All versions < V14.2.0.14), Teamcenter Visualization V14.3 (All versions < V14.3.0.12), Teamcenter Visualization V2312 (All versions < V2312.0008), Tecnomatix Plant Simulation V2302 (All versions < V2302.0016), Tecnomatix Plant Simulation V2404 (All versions < V2404.0005). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted WRL files. This could allow an attacker ... • https://cert-portal.siemens.com/productcert/html/ssa-583523.html • CWE-125: Out-of-bounds Read •