← Back to Feed

Siemens Simcenter Femap

CVE-2026-59700CVE-2026-59701

August 13, 2026 · CISA (US-CERT) · Severity: CRITICAL

Simcenter Femap has two out-of-bounds read vulnerabilities triggered when reading specially crafted BMP files. Successful exploitation can crash the application or execute arbitrary code in the current process. Siemens fixed the flaws in V2606.0001.

Key Takeaways

  • Simcenter Femap before V2606.0001 is vulnerable to two out-of-bounds read flaws while parsing BMP files.
  • Opening a specially crafted BMP file can crash the application or allow arbitrary code execution.
  • Siemens released Simcenter Femap V2606.0001 to patch CVE-2026-59700 and CVE-2026-59701; update immediately.
☕ Buy a Coffee