2025 Dassault Systèmes DELMIA Apriso — CISA KEV entries for actively exploited code-injection / auth flaws in customer MES deployments
Data compromised
Manufacturing execution data and corporate credentials in worst-case customer deployments (per advisories)
Technical writeup
2025 CISA KEV expansions added critical DELMIA Apriso issues (CVE‑2025‑6204, CVE‑2025‑6205, etc.) after in‑the‑wild exploitation reports; coverage emphasized manufacturing/MES tenants patching edge gateways—different from a central 3DS SaaS tenant breach yet still a material product security event for Dassault’s installed base.
Root cause
Missing authorization / code injection per CVE narratives leveraged in active attacks