A heap buffer overflow vulnerability in Wibu CodeMeter Runtime network service up to version 7.60b allows an unauthenticated, remote attacker to achieve RCE and gain full access of the host system.
References
Link | Resource |
---|---|
https://cdn.wibu.com/fileadmin/wibu_downloads/security_advisories/AdvisoryWIBU-230704-01-v3.0.pdf | Vendor Advisory |
https://cert.vde.com/en/advisories/VDE-2023-031/ | Third Party Advisory |
https://cert.vde.com/en/advisories/VDE-2023-030/ |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
19 Sep 2023, 08:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
15 Sep 2023, 14:53
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
CPE | cpe:2.3:a:trumpf:tubedesign:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:teczonebend:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:trutopsboost:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:tops_unfold:05.03.00.00:*:*:*:*:*:*:* cpe:2.3:a:trumpf:trutopsfab_storage_smallstore:*:*:*:*:*:*:*:* cpe:2.3:a:wibu:codemeter_runtime:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:oseon:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:trumpflicenseexpert:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:trutopsprint:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:trutops_cell_classic:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:topscalculation:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:programmingtube:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:trutops:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:trutops_cell_sw48:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:trutopsprintmultilaserassistant:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:trutopsfab:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:trutopsweld:*:*:*:*:*:*:*:* cpe:2.3:a:trumpf:trutops_mark_3d:*:*:*:*:*:*:*:* |
|
References | (MISC) https://cdn.wibu.com/fileadmin/wibu_downloads/security_advisories/AdvisoryWIBU-230704-01-v3.0.pdf - Vendor Advisory | |
References | (MISC) https://cert.vde.com/en/advisories/VDE-2023-031/ - Third Party Advisory | |
First Time |
Trumpf oseon
Trumpf trumpflicenseexpert Trumpf tops Unfold Wibu codemeter Runtime Trumpf Wibu Trumpf topscalculation Trumpf tubedesign Trumpf trutops Cell Sw48 Trumpf trutopsweld Trumpf teczonebend Trumpf trutops Trumpf trutopsfab Storage Smallstore Trumpf trutopsfab Trumpf trutopsprint Trumpf trutops Cell Classic Trumpf trutopsboost Trumpf trutops Mark 3d Trumpf programmingtube Trumpf trutopsprintmultilaserassistant |
13 Sep 2023, 16:34
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-09-13 14:15
Updated : 2023-09-19 08:15
NVD link : CVE-2023-3935
Mitre link : CVE-2023-3935
CVE.ORG link : CVE-2023-3935
JSON object : View
Products Affected
trumpf
- trutopsprint
- topscalculation
- trutops
- oseon
- tops_unfold
- teczonebend
- trutopsprintmultilaserassistant
- trutops_mark_3d
- trutopsfab_storage_smallstore
- trutops_cell_sw48
- trutops_cell_classic
- trutopsboost
- tubedesign
- trutopsfab
- trumpflicenseexpert
- trutopsweld
- programmingtube
wibu
- codemeter_runtime
CWE
CWE-787
Out-of-bounds Write