Two recent vulnerabilities in Dassault Systèmes’ DELMIA Apriso manufacturing software have been exploited in active attacks, prompting urgent patches. These flaws enable attackers to escalate privileges and execute arbitrary code, risking industrial system security. #CISA #DELMIAApriso #CVE6204 #CVE6205 #IndustrialControlSystems
Keypoints
- The US CISA has issued a warning about exploited vulnerabilities in DELMIA Apriso software.
- The flaws CVE-2025-6204 and CVE-2025-6205 affect multiple releases from 2020 to 2025.
- Attacks involve creating privileged accounts and deploying malicious executables on servers.
- Dassault Systèmes has released patches for these vulnerabilities to mitigate risks.
- Organizations are advised to monitor for suspicious account activity and scan for malicious files.
Read More: https://www.securityweek.com/cisa-warns-of-exploited-delmia-factory-software-vulnerabilities/