cbcvebase.
CVE-2021-20093
published 2021-06-16

CVE-2021-20093: A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap…

critical9.1CVSS 3.1
AVNACLPRNUINSUCHINAH
A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap memory contents or crash the CodeMeter Runtime Server.

Affected

14 ranges
VendorProductVersion rangeFixed in
siemenssimatic_information_server
siemenssimatic_information_server
siemenssimatic_pcs_neo< 3.13.1
siemenssimatic_process_historian
siemenssimatic_process_historian>= 2019 < 20202020
siemenssimatic_wincc_oa
siemenssimatic_wincc_oa
siemenssimit_simulation_platform
siemenssimit_simulation_platform>= 10.0 < 10.310.3
siemenssinec_infrastructure_network_services< 1.0.1.11.0.1.1
siemenssinec_infrastructure_network_services
siemenssinema_remote_connect_server< 3.03.0
siemenssinema_remote_connect_server
wibucodemeter<= 7.21a