HIGH

CVE-2025-6204

3ds Delmia Apriso 2025-08-04 CVSS v3.1
CVSS
8
KEV

Description

An Improper Control of Generation of Code (Code Injection) vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025 could allow an attacker to execute arbitrary code.

Summary dbcve.org

A code injection vulnerability in DELMIA Apriso allows attackers to inject and execute arbitrary code. This improper control of code generation affects versions from Release 2020 through Release 2025, potentially enabling full system compromise.

Mitigation

Apply vendor-provided patches for DELMIA Apriso releases 2020-2025. Until patched, restrict network access to Apriso interfaces and monitor for suspicious input patterns.

Weakness (CWE)

CWE-94 Code Injection

EPSS Score

77.96%
Probability of exploitation in next 30 days
99.6th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE