CVE-2025-6205 - Dassault Systèmes DELMIA Apriso Missing Authorization Vulnerability
Project:Dassault Systèmes
Product:DELMIA Apriso
Date Added:2025-10-28Due Date:2025-11-18
Vulnerability Name
Dassault Systèmes DELMIA Apriso Missing Authorization Vulnerability
Description
Dassault Systèmes DELMIA Apriso contains a missing authorization vulnerability that could allow an attacker to gain privileged access to the application.
Known To Be Used in Ransomware Campaigns?
Unknown
Action
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Additional Notes
https://www.3ds.com/trust-center/security/security-advisories/cve-2025-6205
https://nvd.nist.gov/vuln/detail/CVE-2025-6205
Related News Articles
Active Exploits Hit Dassault and XWiki — CISA Confirms Critical Flaws Under AttackOctober 29, 2025