CVE-2025-5086 is a critical vulnerability affecting DELMIA Apriso, a Manufacturing Operations Management (MOM) and Manufacturing Execution System (MES) software developed by Dassault Systèmes. DELMIA Apriso is widely used in industrial environments to manage production processes and connect production lines to enterprise systems. The vulnerability affects versions from Release 2020 to Release 2025.
| Product | DELMIA Apriso |
| Date | 2025-09-22 11:06:06 |
| Information |
|
Technical Summary
This is an untrusted data deserialization vulnerability with a CVSS score of 9.0 out of 10.0, classified as critical severity. The vulnerability could potentially allow remote code execution by attackers who successfully exploit the deserialization flaw.
What makes this vulnerability particularly dangerous is the fact that CISA has confirmed active exploitation in real-world environments and has added CVE-2025-5086 to its Known Exploited Vulnerabilities (KEV) catalog. This indicates that malicious actors are already using this vulnerability to compromise systems.
Recommendations
Immediate action required: Organizations using DELMIA Apriso must treat this issue as an emergency and prioritize applying patches immediately, due to active exploitation.
Patch management: Apply security updates for DELMIA Apriso as soon as they are made available by Dassault Systèmes.
Network segmentation: Implement or verify network segmentation to limit the exposure of DELMIA Apriso systems to untrusted networks.
Monitoring: Enhance monitoring of DELMIA Apriso systems to identify suspicious activity or unauthorized access attempts.
Incident response: Review and activate incident response procedures, as systems may already be compromised given the active exploitation.
Risk assessment: Conduct an immediate risk assessment to understand the potential impact on production operations and data integrity.
Protect your organisation with Threat Intelligence and Digital Risk Protection.
Choose ISGroup for a practical, tailored engagement:
- A focused assessment of your environment and requirements
- Clear findings with a prioritised, actionable roadmap
- Direct support from experienced specialists through remediation and implementation
