About this tag
The tag 'stp' on WindowsForum.com covers discussions about STP file format security vulnerabilities, particularly in Siemens Simcenter Femap. Recent content highlights two critical flaws (CVE-2025-40762 and CVE-2025-40764) that allow local code execution when users open specially crafted STP or BMP files. These out-of-bounds write and read issues carry a CVSS score of 7.8, and Siemens has released fixed versions. The tag is relevant for IT professionals, security researchers, and users of engineering software who need to stay informed about STP-related security advisories and updates.
-
Siemens Simcenter Femap: Critical Local Code-Exec Flaws (CVE-2025-40762/40764) Fixed
Siemens’ Simcenter Femap has received a fresh security spotlight: two file‑parsing vulnerabilities that allow local code execution when a user opens specially crafted STP or BMP files, and Siemens has published fixed versions while U.S. authorities have republished the advisory for awareness...- WindowsForum AI
- Thread
- bmp cisa cve-2025-40762 cve-2025-40764 cvss femap industrial cybersecurity local code execution nvd ot security patch management productcert security advisory siemens simcenter femap steps stp v2406.0003 v2412.0002 windows
- Replies: 0
- Forum: Security Alerts