CVE-2026-22923

A vulnerability has been identified in NX (All versions < V2512), NX (Managed Mode) (All versions < V2512). The affected application contains a data validation vulnerability that could allow an attacker with local access to interfere with internal data during the PDF export process that could potentially lead to arbitrary code execution.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:siemens:nx:*:*:*:*:*:*:*:*

History

10 Mar 2026, 18:18

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad ha sido identificada en NX (Todas las versiones &lt; V2512). La aplicación afectada contiene una vulnerabilidad de validación de datos que podría permitir a un atacante con acceso local interferir con datos internos durante el proceso de exportación de PDF, lo que podría llevar potencialmente a la ejecución de código arbitrario.
Summary (en) A vulnerability has been identified in NX (All versions < V2512). The affected application contains a data validation vulnerability that could allow an attacker with local access to interfere with internal data during the PDF export process that could potentially lead to arbitrary code execution. (en) A vulnerability has been identified in NX (All versions < V2512), NX (Managed Mode) (All versions < V2512). The affected application contains a data validation vulnerability that could allow an attacker with local access to interfere with internal data during the PDF export process that could potentially lead to arbitrary code execution.

26 Feb 2026, 21:28

Type Values Removed Values Added
First Time Siemens nx
Siemens
CPE cpe:2.3:a:siemens:nx:*:*:*:*:*:*:*:*
References () https://cert-portal.siemens.com/productcert/html/ssa-535115.html - () https://cert-portal.siemens.com/productcert/html/ssa-535115.html - Vendor Advisory

10 Feb 2026, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2026-02-10 10:15

Updated : 2026-03-10 18:18


NVD link : CVE-2026-22923

Mitre link : CVE-2026-22923

CVE.ORG link : CVE-2026-22923


JSON object : View

Products Affected

siemens

  • nx
CWE
CWE-121

Stack-based Buffer Overflow