Wibu kayıtları
wibu üreticisine ait 20 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 2
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-125 Out-of-bounds Read3
- CWE-787 Out-of-bounds Write3
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2
- CWE-326 Inadequate Encryption Strength1
- CWE-346 Origin Validation Error1
- CWE-347 Improper Verification of Cryptographic Signature1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
20 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
49Planlayın | CVE-2018-3991İstismar yok | An exploitable heap overflow vulnerability exists in the WkbProgramLow function of WibuKey Network server management, version 6.40.2402.500.wibu · wibukey · CWE-787 | Kritik9,8 | — | %34,3 | 5 Şub 2019 |
46Planlayın | CVE-2021-20093İstismar yok | A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a.wibu · codemeter · CWE-125 | Kritik9,1 | — | %33,3 | 16 Haz 2021 |
40Planlayın | CVE-2020-14509İstismar yok | Multiple memory corruption vulnerabilities exist in CodeMeter (All versions prior to 7.10) where the packet parser mechanism does not verifywibu · codemeter · CWE-805 | Kritik9,8 | — | %2,1 | 16 Eyl 2020 |
40Planlayın | CVE-2023-3935İstismar yok | Wibu: Buffer Overflow in CodeMeter Runtimewibu · codemeter runtime · CWE-787 | Kritik9,8 | — | %2,0 | 13 Eyl 2023 |
39İzleyin | CVE-2020-14517İstismar yok | Protocol encryption can be easily broken for CodeMeter (All versions prior to 6.90 are affected, including Version 6.90 or newer only if Codwibu · codemeter · CWE-326 | Kritik9,8 | — | %0,7 | 16 Eyl 2020 |
34İzleyin | CVE-2021-47810İstismar yok | WibuKey Runtime 6.51 - 'WkSvW32.exe' Unquoted Service Pathwibu · wibukey · CWE-428 | Yüksek8,5 | — | %0,2 | 15 Oca 2026 |
31İzleyin | CVE-2021-20094İstismar yok | A denial of service vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a.wibu · codemeter · CWE-125 | Yüksek7,5 | — | %4,7 | 16 Haz 2021 |
31İzleyin | CVE-2020-16233İstismar yok | An attacker could send a specially crafted packet that could have CodeMeter (All versions prior to 7.10) send back packets containing data fwibu · codemeter · CWE-404 | Yüksek7,5 | — | %1,8 | 16 Eyl 2020 |
31İzleyin | CVE-2018-3990İstismar yok | An exploitable pool corruption vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTEMS WibuKey.sys Version 6.40 (wibu · wibukey · CWE-119 | Yüksek7,8 | — | %0,6 | 5 Şub 2019 |
31İzleyin | CVE-2024-45181İstismar yok | An issue was discovered in WibuKey64.sys in WIBU-SYSTEMS WibuKey before v6.70 and fixed in v.6.70.wibu · wibukey · CWE-787 | Yüksek7,8 | — | %0,2 | 12 Eyl 2024 |
30İzleyin | CVE-2020-14513İstismar yok | CodeMeter (All versions prior to 6.81) and the software using it may crash while processing a specifically crafted license file due to unverwibu · codemeter · CWE-20 | Yüksek7,5 | — | %1,6 | 16 Eyl 2020 |
30İzleyin | CVE-2020-14515İstismar yok | CodeMeter (All versions prior to 6.90 when using CmActLicense update files with CmActLicense Firm Code) has an issue in the license-file sigwibu · codemeter · CWE-347 | Yüksek7,5 | — | %0,8 | 16 Eyl 2020 |
30İzleyin | CVE-2020-14519İstismar yok | This vulnerability allows an attacker to use the internal WebSockets API for CodeMeter (All versions prior to 7.00 are affected, including Vwibu · codemeter · CWE-346 | Yüksek7,5 | — | %0,6 | 16 Eyl 2020 |
28İzleyin | CVE-2014-8419İstismar yok | Wibu-Systems CodeMeter Runtime before 5.20 uses weak permissions (read and write access for all users) for codemeter.exe, which allows localwibu · codemeter runtime · CWE-264 | Yüksek7,2 | — | %0,5 | 26 Kas 2014 |
28İzleyin | CVE-2021-41057İstismar yok | In WIBU CodeMeter Runtime before 7.30a, creating a crafted CmDongles symbolic link will overwrite the linked file without checking permissiowibu · codemeter runtime · CWE-59 | Yüksek7,1 | — | %0,3 | 14 Kas 2021 |
22İzleyin | CVE-2017-13754Kavram kanıtı | Cross-site scripting (XSS) vulnerability in the "advanced settings - time server" module in Wibu-Systems CodeMeter before 6.50b allows remotwibu · codemeter · CWE-79 | Orta5,4 | — | %3,9 | 7 Eyl 2017 |
22İzleyin | CVE-2018-3989İstismar yok | An exploitable kernel memory disclosure vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTEMS WibuKey.sys Versiwibu · wibukey · CWE-908 | Orta5,5 | — | %0,6 | 5 Şub 2019 |
22İzleyin | CVE-2024-45182İstismar yok | An issue was discovered in WibuKey64.sys in WIBU-SYSTEMS WibuKey before v6.70 and fixed in v.6.70 An improper bounds check allows specially wibu · wibukey · CWE-125 | Orta5,5 | — | %0,2 | 12 Eyl 2024 |
21İzleyin | CVE-2011-4057İstismar yok | Wibu-Systems AG CodeMeter Runtime 4.30c, 4.10b, and possibly other versions before 4.40 allows remote attackers to cause a denial of servicewibu · codemeter runtime · CWE-399 | Orta5,0 | — | %4,9 | 13 Oca 2012 |
17İzleyin | CVE-2011-3689İstismar yok | Cross-site scripting (XSS) vulnerability in Licenses.html in Wibu-Systems CodeMeter WebAdmin 3.30 and 4.30 allows remote attackers to injectwibu · codemeter webadmin · CWE-79 | Orta4,3 | — | %1,3 | 27 Eyl 2011 |
- CVE-2018-399149Planlayın
An exploitable heap overflow vulnerability exists in the WkbProgramLow function of WibuKey Network server management, version 6.40.2402.500.
KritikCVSS 9,8İstismar yokEPSS %34wibu · wibukey5 Şub 2019
- CVE-2021-2009346Planlayın
A buffer over-read vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a.
KritikCVSS 9,1İstismar yokEPSS %33wibu · codemeter16 Haz 2021
- CVE-2020-1450940Planlayın
Multiple memory corruption vulnerabilities exist in CodeMeter (All versions prior to 7.10) where the packet parser mechanism does not verify
KritikCVSS 9,8İstismar yokEPSS %2wibu · codemeter16 Eyl 2020
- CVE-2023-393540Planlayın
Wibu: Buffer Overflow in CodeMeter Runtime
KritikCVSS 9,8İstismar yokEPSS %2wibu · codemeter runtime13 Eyl 2023
- CVE-2020-1451739İzleyin
Protocol encryption can be easily broken for CodeMeter (All versions prior to 6.90 are affected, including Version 6.90 or newer only if Cod
KritikCVSS 9,8İstismar yokEPSS %1wibu · codemeter16 Eyl 2020
- CVE-2021-4781034İzleyin
WibuKey Runtime 6.51 - 'WkSvW32.exe' Unquoted Service Path
YüksekCVSS 8,5İstismar yokEPSS %0wibu · wibukey15 Oca 2026
- CVE-2021-2009431İzleyin
A denial of service vulnerability exists in Wibu-Systems CodeMeter versions < 7.21a.
YüksekCVSS 7,5İstismar yokEPSS %5wibu · codemeter16 Haz 2021
- CVE-2020-1623331İzleyin
An attacker could send a specially crafted packet that could have CodeMeter (All versions prior to 7.10) send back packets containing data f
YüksekCVSS 7,5İstismar yokEPSS %2wibu · codemeter16 Eyl 2020
- CVE-2018-399031İzleyin
An exploitable pool corruption vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTEMS WibuKey.sys Version 6.40 (
YüksekCVSS 7,8İstismar yokEPSS %1wibu · wibukey5 Şub 2019
- CVE-2024-4518131İzleyin
An issue was discovered in WibuKey64.sys in WIBU-SYSTEMS WibuKey before v6.70 and fixed in v.6.70.
YüksekCVSS 7,8İstismar yokEPSS %0wibu · wibukey12 Eyl 2024
- CVE-2020-1451330İzleyin
CodeMeter (All versions prior to 6.81) and the software using it may crash while processing a specifically crafted license file due to unver
YüksekCVSS 7,5İstismar yokEPSS %2wibu · codemeter16 Eyl 2020
- CVE-2020-1451530İzleyin
CodeMeter (All versions prior to 6.90 when using CmActLicense update files with CmActLicense Firm Code) has an issue in the license-file sig
YüksekCVSS 7,5İstismar yokEPSS %1wibu · codemeter16 Eyl 2020
- CVE-2020-1451930İzleyin
This vulnerability allows an attacker to use the internal WebSockets API for CodeMeter (All versions prior to 7.00 are affected, including V
YüksekCVSS 7,5İstismar yokEPSS %1wibu · codemeter16 Eyl 2020
- CVE-2014-841928İzleyin
Wibu-Systems CodeMeter Runtime before 5.20 uses weak permissions (read and write access for all users) for codemeter.exe, which allows local
YüksekCVSS 7,2İstismar yokEPSS %0wibu · codemeter runtime26 Kas 2014
- CVE-2021-4105728İzleyin
In WIBU CodeMeter Runtime before 7.30a, creating a crafted CmDongles symbolic link will overwrite the linked file without checking permissio
YüksekCVSS 7,1İstismar yokEPSS %0wibu · codemeter runtime14 Kas 2021
- CVE-2017-1375422İzleyin
Cross-site scripting (XSS) vulnerability in the "advanced settings - time server" module in Wibu-Systems CodeMeter before 6.50b allows remot
OrtaCVSS 5,4Kavram kanıtıEPSS %4wibu · codemeter7 Eyl 2017
- CVE-2018-398922İzleyin
An exploitable kernel memory disclosure vulnerability exists in the 0x8200E804 IOCTL handler functionality of WIBU-SYSTEMS WibuKey.sys Versi
OrtaCVSS 5,5İstismar yokEPSS %1wibu · wibukey5 Şub 2019
- CVE-2024-4518222İzleyin
An issue was discovered in WibuKey64.sys in WIBU-SYSTEMS WibuKey before v6.70 and fixed in v.6.70 An improper bounds check allows specially
OrtaCVSS 5,5İstismar yokEPSS %0wibu · wibukey12 Eyl 2024
- CVE-2011-405721İzleyin
Wibu-Systems AG CodeMeter Runtime 4.30c, 4.10b, and possibly other versions before 4.40 allows remote attackers to cause a denial of service
OrtaCVSS 5,0İstismar yokEPSS %5wibu · codemeter runtime13 Oca 2012
- CVE-2011-368917İzleyin
Cross-site scripting (XSS) vulnerability in Licenses.html in Wibu-Systems CodeMeter WebAdmin 3.30 and 4.30 allows remote attackers to inject
OrtaCVSS 4,3İstismar yokEPSS %1wibu · codemeter webadmin27 Eyl 2011