EXPOSURES › CVE-2025-6204
CVE-2025-6204
HIGH ⌖ ON CISA KEV · EXPLOITEDDassault Systèmes' DELMIA Apriso had an unpatched code injection vulnerability exploited in the wild, allowing attackers to execute arbitrary code.
Dassault Systèmes' DELMIA Apriso software had a critical code injection vulnerability that was actively exploited, enabling attackers to execute arbitrary code. This highlights the importance of prompt patching and the potential for severe security breaches in mission-critical systems.
Shame score — Active exploitation of a critical vulnerability in a widely-used defense-industrial-base application.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Dassault Systèmes DELMIA Apriso contains a code injection vulnerability that could allow an attacker to execute arbitrary code.