Siemens Teamcenter
Siemens Teamcenter versions 2312, 2406, 2412, and 2506 are affected by multiple vulnerabilities, including a PDF.js flaw and hardcoded credentials. These vulnerabilities could allow for arbitrary code execution and unauthorized access. Siemens has released updated versions and recommends immediate patching to mitigate the risks.
Siemens Teamcenter, a widely used product development and collaboration platform, is experiencing a security vulnerability affecting several versions. The vulnerabilities, identified through analysis of PDF.js and application code, pose a risk of unauthorized access and potential compromise of system integrity. Specifically, a type check issue within PDF.js allows for JavaScript execution, while the presence of hardcoded keys introduces a credential leakage risk. These issues are being addressed through vendor-supplied updates.