logo

Wibu-Systems CodeMeter Vulnerabilities Expose OT Networks

ID: 81a65bfd-94b1-50c9-a7bd-41cfa28b0929

STIX ID: report--81a65bfd-94b1-50c9-a7bd-41cfa28b0929

Feed Name: Claroty Team82

Threat Score
90/100

Date Published: 2023-10-18

Date Updated: 2026-04-17

Author: Sharon Brizinov; Tal Keren

...
...

Claroty (Team82) disclosed six critical vulnerabilities in Wibu-Systems' CodeMeter licensing component that enable license forgery, remote code execution, memory corruption, and lateral movement in OT/ICS environments; ICS-CERT assigned a CVSS 10.0 rating for the most severe issues. The flaws can be exploited via phishing or network access to compromise engineering stations and HMIs used by major vendors (e.g., Rockwell, Siemens), and patches are available in CodeMeter 7.10a while network mitigations (e.g., blocking TCP/22350) and discovery guidance are recommended.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.