Status: UPDATED
| Advisory ID: CVE-2026-59086
Key Details
| CVE | CVE-2026-59086 |
| CVSS Score / Version | 7.8 (High) / CVSS v3.1 |
| Updated | 2026-08-28 |
| CVSS Vector | CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H |
| CVSS Prose | attack vector is local; attack complexity is low; privileges required is none; user interaction is required; scope is unchanged; confidentiality impact is high; integrity impact is high; availability impact is high. |
| Affected products | Siemens Simcenter Femap and Siemens Simcenter Nastran |
| Classified as | CWE-121 (Stack-based Buffer Overflow) |
Affected Products, Subsystems & Sectors
| Subsystems | General OT |
| Sectors | Multiple |
What to Know
A vulnerability has been identified in Simcenter Femap (All versions < V2606), Simcenter Nastran (All versions < V2606). The affected applications contain a stack overflow vulnerability while parsing specially strings as argument for one of the application binaries. This could allow an attacker to execute code in the context of the current process. (NVD)
What to Do
Monitor Siemens's web page for any future patch releases.
References