---
id: CVE-2022-34659
title: >-
  A vulnerability has been identified in Simcenter STAR-CCM+ (All versions only
  if the Power-on-Demand public license server is used)
summary: >-
  A vulnerability has been identified in Simcenter STAR-CCM+ (All versions only
  if the Power-on-Demand public license server is used). Affected applications
  expose user, host and display name of users, when the public license server is
  use…
severity: medium
cvss: 5.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N'
cwe:
  - CWE-200
vendor: siemens
product: simcenter_star-ccm+_viewer
affected:
  - simcenter_star-ccm+_viewer
published: '2022-08-10'
updated: '2026-07-14'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2022-34659'
references:
  - url: 'https://cert-portal.siemens.com/productcert/html/ssa-555707.html'
    label: productcert@siemens.com
  - url: 'https://cert-portal.siemens.com/productcert/pdf/ssa-555707.pdf'
    label: productcert@siemens.com
  - url: 'https://cert-portal.siemens.com/productcert/pdf/ssa-555707.pdf'
    label: af854a3a-2127-422b-91ae-364da2661108
tags:
  - nvd
epss: 0.00623
epssPercentile: 0.47593
ingestedAt: '2026-07-14T10:36:25.368Z'
---

## Overview

A vulnerability has been identified in Simcenter STAR-CCM+ (All versions only if the Power-on-Demand public license server is used). Affected applications expose user, host and display name of users, when the public license server is used. This could allow an attacker to retrieve this information.

## Affected

- `simcenter_star-ccm+_viewer`

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
