A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap memory contents or crash the CodeMeter Runtime Server.
https://us-cert.cisa.gov/ics/advisories/icsa-21-210-02
https://cert-portal.siemens.com/productcert/pdf/ssa-675303.pdf
https://www.tenable.com/security/research/tra-2021-24
https://cdn.wibu.com/fileadmin/wibu_downloads/security_advisories/Advisory_WIBU-210423-01.pdf
Source: Mitre, NVD
Published: 2021-06-16
Updated: 2022-10-06
Base Score: 6.4
Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:P
Severity: Medium
Base Score: 9.1
Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Severity: Critical
EPSS: 0.0756