### [CVE-2025-25267](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2025-25267) ![](https://img.shields.io/static/v1?label=Product&message=Tecnomatix%20Plant%20Simulation%20V2302&color=blue) ![](https://img.shields.io/static/v1?label=Product&message=Tecnomatix%20Plant%20Simulation%20V2404&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=0%20&color=brightgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-552%3A%20Files%20or%20Directories%20Accessible%20to%20External%20Parties&color=brightgreen) ### Description A vulnerability has been identified in Tecnomatix Plant Simulation V2302 (All versions < V2302.0021), Tecnomatix Plant Simulation V2404 (All versions < V2404.0010). The affected application does not properly restrict the scope of files accessible to the simulation model. This could allow an unauthorized attacker to compromise the confidentiality of the system. ### POC #### Reference No PoCs from references. #### Github - https://github.com/fkie-cad/nvd-json-data-feeds