CVE-2020-14519: High severity wibu-systems ag vulnerability
This vulnerability allows an attacker to use the internal WebSockets API for CodeMeter (All versions prior to 7.00 are affected, including Version 7.0 or newer with the affected WebSockets API still enabled. This is especially relevant for systems or devices where a web browser is used to access a web server) via a specifically crafted Java Script payload, which may allow alteration or creation of license files for when combined with CVE-2020-14515.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-14519?
CVE-2020-14519 is a vulnerability that allows an attacker to use the internal WebSockets API for CodeMeter.
Which versions of CodeMeter are affected by CVE-2020-14519?
All versions prior to 7.00 of CodeMeter are affected by CVE-2020-14519.
How can an attacker exploit CVE-2020-14519?
An attacker can exploit CVE-2020-14519 by using the internal WebSockets API for CodeMeter.
What is the severity of CVE-2020-14519?
CVE-2020-14519 has a severity rating of 7.5 (high).
Where can I find more information about CVE-2020-14519?
You can find more information about CVE-2020-14519 at the following link: [https://us-cert.cisa.gov/ics/advisories/icsa-20-203-01](https://us-cert.cisa.gov/ics/advisories/icsa-20-203-01)