HIGH
CVE-2025-6204
CVSS
8
KEV
Description
An Improper Control of Generation of Code (Code Injection) vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025 could allow an attacker to execute arbitrary code.
Summary dbcve.org
A code injection vulnerability in DELMIA Apriso allows attackers to inject and execute arbitrary code. This improper control of code generation affects versions from Release 2020 through Release 2025, potentially enabling full system compromise.
Mitigation
Apply vendor-provided patches for DELMIA Apriso releases 2020-2025. Until patched, restrict network access to Apriso interfaces and monitor for suspicious input patterns.
Weakness (CWE)
CWE-94
Code Injection
EPSS Score
77.96%
Probability of exploitation in next 30 days
99.6th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.