CNNVD-202511-2641 Information

CNNVD ID

CNNVD-202511-2641

CVE-2025-10554

  • CNNVD Published: 2025-11-24

Description (Chinese)

Dassault Systèmes ENOVIA Product Manager是法国达索系统(Dassault Systèmes)公司的一款产品生命周期管理软件。 Dassault Systèmes ENOVIA Product Manager Release 3DEXPERIENCE R2023x版本至Release 3DEXPERIENCE R2025x版本存在安全漏洞,该漏洞源于存储型跨站脚本漏洞,可能导致执行任意脚本代码。

Description (English)

Dassault Systèmes ENOVIA Production Manager is a product life-cycle management software for Dassault Systèmes, France. Dassault Systèmes ENOVIA Prof. Manager Release 3DEXPERERENCE R2023x version to Release 3DEXPERINE R2025x contains a security loophole, which originates from a storage-type cross-site script loophole that may lead to the implementation of any script code.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

Dassault Systèmes

Published

2025-11-24

Last Modified

2026-02-24

References

https://www.3ds.com/trust-center/security/security-advisories/cve-2025-10554 https://access.redhat.com/security/cve/cve-2025-10554

Patch

https://www.3ds.com/products/enovia/

Share on: