Wibu / Codemeter
9 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2020-37017 | CodeMeter 6.60 - 'CodeMeter.exe' Unquoted Service Path | HIGH | 8.5 | Jan 29, 2026 |
| CVE-2025-47809 | Wibu CodeMeter before 8.30a sometimes allows privilege escalation immediately after installation (before a logoff or reboot). For exploitation, there must have… | HIGH | 8.2 | May 16, 2025 |
| CVE-2021-20094 | A denial of service vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to crash the Cod… | HIGH | 7.5 | Jun 16, 2021 |
| CVE-2021-20093 | A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a. An unauthenticated remote attacker can exploit this issue to disclose heap… | CRITICAL | 9.1 | Jun 16, 2021 |
| CVE-2020-16233 | An attacker could send a specially crafted packet that could have CodeMeter (All versions prior to 7.10) send back packets containing data from the heap. | HIGH | 7.5 | Sep 16, 2020 |
| CVE-2020-14513 | CodeMeter (All versions prior to 6.81) and the software using it may crash while processing a specifically crafted license file due to unverified length fields. | HIGH | 7.5 | Sep 16, 2020 |
| CVE-2020-14515 | CodeMeter (All versions prior to 6.90 when using CmActLicense update files with CmActLicense Firm Code) has an issue in the license-file signature checking mec… | HIGH | 7.5 | Sep 16, 2020 |
| CVE-2020-14519 | This vulnerability allows an attacker to use the internal WebSockets API for CodeMeter (All versions prior to 7.00 are affected, including Version 7.0 or newer… | HIGH | 7.5 | Sep 16, 2020 |
| CVE-2020-14517 | Protocol encryption can be easily broken for CodeMeter (All versions prior to 6.90 are affected, including Version 6.90 or newer only if CodeMeter Runtime is r… | CRITICAL | 9.8 | Sep 16, 2020 |
| CVE-2020-14509 | Multiple memory corruption vulnerabilities exist in CodeMeter (All versions prior to 7.10) where the packet parser mechanism does not verify length fields. An… | CRITICAL | 9.8 | Sep 16, 2020 |
| CVE-2017-13754 | Cross-site scripting (XSS) vulnerability in the "advanced settings - time server" module in Wibu-Systems CodeMeter before 6.50b allows remote attackers to inje… | MEDIUM | 5.4 | Sep 7, 2017 |
Showing 1 to 9 of 9 CVEs