Skip to content
CVSS 10.0CVSS 10.0 · CRITICAL

CVE-2026-17061Unauthenticated RCE in SIMULIA Execution Engine

A Deserialization of Untrusted Data vulnerability affecting SIMULIA Execution Engine from Release 2023 through Release 2026 could lead to an unauthenticated remote code execution.

View on NVD

Analysis

Una vulnerabilidad de deserialización de datos en SIMULIA Execution Engine permite a un atacante ejecutar código de forma remota sin necesidad de autenticación previa. Este fallo afecta a las versiones de 2023 a 2026 y otorga control total sobre el servidor afectado. Se recomienda actualizar inmediatamente debido a que la vulnerabilidad alcanza la puntuación máxima de severidad.

Relevant roles

BackendJavaCyberSecurityLinuxWindows

Severity

Score: 10.0(CRITICAL)
Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
AV: NETWORK
AC: LOW
PR: NONE
UI: NONE
S: CHANGED
C: HIGH
I: HIGH
A: HIGH
Weakness (CWE): CWE-502

EPSS

No EPSS score yet (CVE may be too fresh).

Technical description

A Deserialization of Untrusted Data vulnerability affecting SIMULIA Execution Engine from Release 2023 through Release 2026 could lead to an unauthenticated remote code execution.

Published: 8/11/2026, 3:17:27 PM
Last modified: 8/11/2026, 3:17:27 PM

References

HomeEventsBlogResourcesCoursesTeam