Status: UPDATED | Advisory ID: CVE-2026-44412
| CVE | CVE-2026-44412 |
| CVSS Score / Version | 7.8 (High) / CVSS v3.1 |
| Updated | 2026-06-17 |
| CVSS Vector | CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
| CVSS Prose | attack vector is local; attack complexity is low; privileges required is none; user interaction is required; scope is unchanged; confidentiality impact is high; integrity impact is high; availability impact is high. |
| Affected products | Siemens Solid Edge SE2026 |
| Classified as | CWE-121 (Stack-based Buffer Overflow) |
| Vendor | Product | Affected Versions | Patch Status |
|---|---|---|---|
| Siemens | Solid Edge SE2026 |
| Subsystems | General OT |
| Sectors | Multiple |
A vulnerability has been identified in Solid Edge SE2026 (All versions < V226.0 Update 5). The affected applications contain a stack based overflow vulnerability while parsing specially crafted PAR files.
This could allow an attacker to execute code in the context of the current process. (NVD)
Monitor Siemens's web page for any future patch releases.
| Source | Reference |
|---|---|
| NVD | https://nvd.nist.gov/vuln/detail/CVE-2026-44412 |
| CVE | https://www.cve.org/CVERecord?id=CVE-2026-44412 |