CVE-2021-20093

CWE-125Out-of-bounds Read3 documents3 sources
Severity
9.1CRITICAL
EPSS
8.2%
top 7.79%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJun 16
Latest updateMay 24

Description

A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap memory contents or crash the CodeMeter Runtime Server.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:HExploitability: 3.9 | Impact: 5.2

Affected Packages9 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-m5xx-rgqg-j2m6: A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 72022-05-24
CVEList
CVE-2021-20093: A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 72021-06-16
CVE-2021-20093 (CRITICAL CVSS 9.1) | A buffer over-read vulnerability ex | cvebase.io