VDB
CVE-2026-22923
CVE-2026-22923
PUBLISHED
CVSS 7.800000190734863 HIGH
A vulnerability has been identified in NX (All versions < V2512). The affected application contains a data validation vulnerability that could allow an attacker with local access to interfere with internal data during the PDF export process that could potentially lead to arbitrary code execution.
EPSS 0.01% · 0.7th percentile
Risk Scores
CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.01%
0.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| siemens | nx | 0, 0 |
| Siemens | NX (Managed Mode) | 0, 0 |
| Siemens | NX | 0, 0 |
Exploit Intelligence
- CIRCL seen: CVE-2026-22923 (circl-sighting)
- CIRCL seen: CVE-2026-22923 (circl-sighting)
- CIRCL seen: CVE-2026-22923 (circl-sighting)
- https://cert-portal.siemens.com/productcert/html/ssa-535115.html (circl)
Timeline
- Jan 13, 2026 CVE ID Reserved
- Feb 10, 2026 EPSS Score
- Feb 10, 2026 CVE Published
- Feb 10, 2026 PoC Published
- Feb 10, 2026 PoC Published
- Feb 12, 2026 EPSS Score
- Feb 12, 2026 PoC Published
- Feb 14, 2026 EPSS Score
- Feb 16, 2026 EPSS Score
- Feb 18, 2026 EPSS Score
- Feb 20, 2026 EPSS Score
- Feb 22, 2026 EPSS Score