#VU46532 Improper Verification of Cryptographic Signature in CodeMeter Runtime - CVE-2020-14515
Published: September 9, 2020
CodeMeter Runtime
Wibu Systems
Description
The vulnerability allows a remote attacker to compromise the target system.
The vulnerability exists due to the affected software does not verify the cryptographic signature for data within the license-file signature checking mechanism. A remote attacker can build arbitrary license files, including forging a valid license file as if it were a valid license file of an existing vendor.