The vendor explicitly identifies these products as affected by this CVE.
- Siemens Software Center
- Simcenter 3D
- Simcenter Femap
- Simcenter STAR-CCM+
- Solid Edge SE2025
- Solid Edge SE2026
- Tecnomatix Plant Simulation
- Summary
- Affected applications do not properly validate client certificates to connect to Analytics Service endpoint. This could allow an unauthenticated remote attacker to perform man in the middle attacks.
- Remediation
- Update to V225.0 Update 13 or later version
