Protocol encryption can be easily broken for CodeMeter (All versions prior to 6.90 are affected, including Version 6.90 or newer only if CodeMeter Runtime is running as server) and the server accepts external connections, which may allow an attacker to remotely communicate with the CodeMeter API.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HWibu Codemeter
APPWibu< 6.90
Related vulnerabilities
Buffer over-read w Wibu-Systems CodeMeter — ujawnienie pamięci lub crash
Uszkodzenie pamięci w Wibu CodeMeter — brak walidacji długości pakietów
A denial of service vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote...
An attacker could send a specially crafted packet that could have CodeMeter (All versions prior to 7.10) send ...
This vulnerability allows an attacker to use the internal WebSockets API for CodeMeter (All versions prior to ...