CVE 9 CRITICAL

OS Command Injection vulnerability affecting Station Launcher App in 3DEXPERIENCE platform from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2025x_CVE-2025-9976

9 / 10
CRITICAL
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H

Description

An OS Command Injection vulnerability affecting Station Launcher App in 3DEXPERIENCE platform from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2025x could allow an attacker to execute arbitrary code on the user's machine.

Basic Information

ID CVE-2025-9976
Source 3DS
Published Oct 13, 2025 at 07:33

Affected Product

Vendor Dassault Systèmes
Product Station Launcher App in 3DEXPERIENCE platform
Version Release 3DEXPERIENCE R2022x Golden
Affected Versions Dassault Systèmes Station Launcher App in 3DEXPERIENCE platform Release 3DEXPERIENCE R2022x Golden
Dassault Systèmes Station Launcher App in 3DEXPERIENCE platform Release 3DEXPERIENCE R2023x Golden
Dassault Systèmes Station Launcher App in 3DEXPERIENCE platform Release 3DEXPERIENCE R2024x Golden
Dassault Systèmes Station Launcher App in 3DEXPERIENCE platform Release 3DEXPERIENCE R2025x Golden

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.