CVE-2026-69108: High severity Siemens License Server (SLS) vulnerability
A vulnerability has been identified in Siemens License Server (SLS) (All versions < V5.1). The affected application is vulnerable to a local privilege escalation due to an insecure sudoers policy. This could allow an attacker to execute arbitrary commands and plant malicious files as root, leading to full system compromise.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-69108?
The severity of CVE-2026-69108 is medium with a score of 6.
What causes the vulnerability CVE-2026-69108?
CVE-2026-69108 is caused by an insecure sudoers policy in all versions of Siemens License Server prior to V5.1.
What are the potential impacts of CVE-2026-69108?
The potential impacts of CVE-2026-69108 include local privilege escalation, allowing attackers to execute arbitrary commands as root.
How do I fix CVE-2026-69108?
To fix CVE-2026-69108, upgrade to Siemens License Server version V5.1 or later.
Which software is affected by CVE-2026-69108?
The affected software for CVE-2026-69108 is Siemens License Server (SLS) in all versions prior to V5.1.