CVE-2020-14515 is a critical vulnerability in CodeMeter versions prior to 6.90, specifically impacting CmActLicense update files with CmActLicense Firm Code. This flaw allows attackers to forge valid license files, potentially enabling unauthorized software use. With a CVSS score of 7.5 (HIGH), it is a network-exploitable vulnerability with low attack complexity, leading to high integrity impact without requiring user interaction. While there is no evidence of active exploitation or publicly available exploit code, the vulnerability has garnered some community discussion and media coverage, indicating awareness within the cybersecurity community.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 6.90CPE matchmatch criteria | cpe:2.3:a:wibu:codemeter:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
WIBU Systems CodeMeter Runtime Vulnerabilities in Rexroth Products
Sep 25, 2020WIBU Systems CodeMeter Runtime Vulnerabilities in Rexroth Products
Sep 25, 2020WIBU Systems CodeMeter Runtime Vulnerabilities in Rexroth Products
Sep 25, 2020WIBU Systems CodeMeter Runtime Vulnerabilities in Rexroth Products
Sep 25, 2020WIBU Systems CodeMeter Runtime Vulnerabilities in Rexroth Products
Sep 25, 2020