CRITICAL
CVE-2025-6205
CVSS
9.1
KEV
Description
A missing authorization vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025 could allow an attacker to gain privileged access to the application.
Summary dbcve.org
This is a missing authorization vulnerability in DELMIA Apriso that allows attackers to bypass access controls and gain privileged access to the application. The flaw affects releases 2020 through 2025, indicating a systemic authorization gap present across multiple years of the software.
Mitigation
Apply vendor-supplied patches for DELMIA Apriso and conduct a thorough access control audit to identify and remediate any remaining authorization gaps in the affected deployments.
Weakness (CWE)
CWE-862
Missing Authorization
EPSS Score
73.31%
Probability of exploitation in next 30 days
99.4th percentile
References
Base CVE data derived from NVD (public domain). Enrichment by
dbcve.org
(CC-BY-4.0). Fetched via API.