QID 590731

Date Published: 2022-03-28

QID 590731: Wibu-Systems CodeMeter Multiple Vulnerabilities (CD_SVA_2021_1)

AFFECTED PRODUCTS
Siemens reports the vulnerability affects the following products:
CodeMeter User Runtime Software: all versions prior to 7.21a

QID Detection Logic (Authenticated):
QID checks for the Vulnerable version of Codemeter.exe using registry "HKLM\SOFTWARE\CodeMeter"

Successful exploitation of this vulnerability could lead to Heap Leak and Denial of Service.

  • CVSS V3 rated as Critical - 9.1 severity.
  • CVSS V2 rated as High - 6.4 severity.
  • Solution

    Customers are advised to refer to upgrade Codemeter to 7.21a or higher versions. For more inforamtion kindly visit CD_SVA_2021_1.

    CVEs related to QID 590731

    Software Advisories
    Advisory ID Software Component Link
    CD_SVA_2021_1 URL Logo www.copadata.com/fileadmin/user_upload/faq/files/CD_SVA_2021_1.pdf