CVE Details
Basic Information
| Title | Improper Control of Generation of Code (Code Injection) vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025 |
|---|---|
| Type | cve |
| Published | 2025-08-04T09:14:08.343Z |
| Modified | 2025-08-04T09:14:08.343Z |
Product Information
| Vendor | Dassault Systèmes |
|---|---|
| Product | DELMIA Apriso |
| Version | Release 2020 Golden |
CVSS Information
| Base Score | 8.0 (HIGH) |
|---|---|
| Attack Vector | CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:H/I:H/A:H |
Affected Products
- Dassault Systèmes DELMIA Apriso Release 2020 Golden
- Dassault Systèmes DELMIA Apriso Release 2021 Golden
- Dassault Systèmes DELMIA Apriso Release 2022 Golden
- Dassault Systèmes DELMIA Apriso Release 2023 Golden
- Dassault Systèmes DELMIA Apriso Release 2024 Golden
- Dassault Systèmes DELMIA Apriso Release 2025 Golden
Additional Information
| CWE List | CWE-94 |
|---|---|
| Source | 3DS |
Description
An Improper Control of Generation of Code (Code Injection) vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025 could allow an attacker to execute arbitrary code.