Back

HIGH

CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exist that could cause execution of untrusted commands on the engineering workstation which could result in a limited compromise of the workstation and a potential loss of Confidentiality, Integrity and Availability of the subsequent system when an authenticated user opens a malicious project file

Published Mar 10, 2026

Description

CWE-94: Improper Control of Generation of Code ('Code Injection') vulnerability exist that could cause execution of untrusted commands on the engineering workstation which could result in a limited compromise of the workstation and a potential loss of Confidentiality, Integrity and Availability of the subsequent system when an authenticated user opens a malicious project file.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner schneider
Published Mar 10, 2026
Updated Mar 10, 2026
Reserved Feb 10, 2026
CISA Vulnrichment
Updated Mar 10, 2026
NVD
Status Analyzed
Modified Jun 23, 2026
Red Hat
Severity n/a
Public date n/a
ENISA EUVD
Assigner schneider
Published Mar 10, 2026
Updated Mar 10, 2026
Exploited since n/a
EUVD-2026-10571