← Back to Feed
Siemens Simcenter Femap
CVE-2026-59700CVE-2026-59701
August 13, 2026 · CISA (US-CERT) · Severity: CRITICAL
Simcenter Femap has two out-of-bounds read vulnerabilities triggered when reading specially crafted BMP files. Successful exploitation can crash the application or execute arbitrary code in the current process. Siemens fixed the flaws in V2606.0001.
Key Takeaways
- Simcenter Femap before V2606.0001 is vulnerable to two out-of-bounds read flaws while parsing BMP files.
- Opening a specially crafted BMP file can crash the application or allow arbitrary code execution.
- Siemens released Simcenter Femap V2606.0001 to patch CVE-2026-59700 and CVE-2026-59701; update immediately.