Get a Pentest and security assessment of your IT network.

2021-current

CVE-2020-14515 – CodeMeter (All versions prior to 6.90 when using CmActLicense update file

CodeMeter (All versions prior to 6.90 when using CmActLicense update files with CmActLicense Firm Code) has an issue in the license-file signature checking mechanism, which allows attackers to build arbitrary license files, including forging a valid license file as if it were a valid license file of an existing vendor. Only CmActLicense update files with CmActLicense Firm Code are affected.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-14515

Reference (s):

  • https://us-cert.cisa.gov/ics/advisories/icsa-20-203-01
  • URL: https://us-cert.cisa.gov/ics/advisories/icsa-20-203-01
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-6594 - Unspecified vulnerability in the Oracle iLearning component in Oracle iLe

2021-current

CVE-2019-8457 - SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-b

2021-current

CVE-2020-12257 - rConfig 3.9.4 is vulnerable to cross-site request forgery (CSRF) because