ZeroHour

CVE-2021-20093

PoC
CVSS 3.1
9.1 critical
EPSS
33%p98
Published
()
Modified
Description

A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap memory contents or crash the CodeMeter Runtime Server.

Vendors
wibusiemens
Products
codemeter, pss cape, sicam 230 firmware, simatic information server, simatic pcs neo, simatic wincc oa, simit simulation platform, sinec infrastructure network services, sinema remote connect server, simatic process historian
Weakness
CWE-125
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H

In the news

No ingested article mentions this CVE yet.