CVE-2023-3935

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
13/09/2023
Last modified:
25/01/2024

Description

A heap buffer overflow vulnerability in Wibu CodeMeter Runtime network service up to version 7.60b allows an unauthenticated, remote attacker to achieve RCE and gain full access of the host system.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:wibu:codemeter_runtime:*:*:*:*:*:*:*:* 7.60c (excluding)
cpe:2.3:a:trumpf:oseon:*:*:*:*:*:*:*:* 1.0.0 (including) 3.0.22 (including)
cpe:2.3:a:trumpf:programmingtube:*:*:*:*:*:*:*:* 1.0.1 (including) 4.6.3 (including)
cpe:2.3:a:trumpf:teczonebend:*:*:*:*:*:*:*:* 18.02.r8 (including) 23.06.01 (including)
cpe:2.3:a:trumpf:tops_unfold:05.03.00.00:*:*:*:*:*:*:*
cpe:2.3:a:trumpf:topscalculation:*:*:*:*:*:*:*:* 14.00 (including) 22.00.00 (including)
cpe:2.3:a:trumpf:trumpflicenseexpert:*:*:*:*:*:*:*:* 1.5.2 (including) 1.11.1 (including)
cpe:2.3:a:trumpf:trutops:*:*:*:*:*:*:*:* 08.00 (including) 12.01.00.00 (including)
cpe:2.3:a:trumpf:trutops_cell_classic:*:*:*:*:*:*:*:* 09.09.02 (including)
cpe:2.3:a:trumpf:trutops_cell_sw48:*:*:*:*:*:*:*:* 01.00 (including) 02.26.0 (including)
cpe:2.3:a:trumpf:trutops_mark_3d:*:*:*:*:*:*:*:* 01.00 (including) 06.01 (including)
cpe:2.3:a:trumpf:trutopsboost:*:*:*:*:*:*:*:* 06.00.23.00 (including) 16.0.22 (including)
cpe:2.3:a:trumpf:trutopsfab:*:*:*:*:*:*:*:* 15.00.23.00 (including) 22.8.25 (including)
cpe:2.3:a:trumpf:trutopsfab_storage_smallstore:*:*:*:*:*:*:*:* 14.06.20 (including) 20.04.20.00 (including)
cpe:2.3:a:trumpf:trutopsprint:*:*:*:*:*:*:*:* 00.06.00 (including) 01.00 (including)