TROYANOSYVIRUS
Back to CVEs

CVE-2021-20093

CRITICAL
9.1

Description

A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap memory contents or crash the CodeMeter Runtime Server.

CVE Details

CVSS v3.1 Score9.1
SeverityCRITICAL
CVSS VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Attack VectorNETWORK
ComplexityLOW
Privileges RequiredNONE
User InteractionNONE
Published6/16/2021
Last Modified11/21/2024
Sourcenvd
Honeypot Sightings0

Affected Products

siemens:pss_capesiemens:sicam_230siemens:sicam_230_firmwaresiemens:simatic_information_serversiemens:simatic_pcs_neosiemens:simatic_process_historiansiemens:simatic_wincc_oasiemens:simit_simulation_platformsiemens:sinec_infrastructure_network_servicessiemens:sinema_remote_connect_serverwibu:codemeter

Weaknesses (CWE)

CWE-125

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.