PTC Windchill and FlexPLM Vulnerability
PTC Windchill and FlexPLM contains an improper input validation vulnerability allowing an unauthenticated, remote attacker to execute arbitrary code by sending a malicious request to the network.
CVSS Score
9.8
CRITICAL
Published
25 Jun 2026 00:00
Modified
N/A
Vendor
PTC
Product
Windchill and FlexPLM
Source
CIRCL
Affected Versions
Fix
Vendor Patch / Mitigation Available
Weaknesses (CWE)
CWE-20
CWE-502
Affected Systems
PTC
Windchill and FlexPLM
PTC
Windchill And FlexPLM
External Links
KEV Status
Known Exploited Vulnerability