WIBU SYSTEMS AG WibuKey Digital Rights Management (Update D)
WIBU SYSTEMS AG WibuKey Digital Rights Management (DRM) library contains multiple vulnerabilities affecting industrial control software products that use it for license management. The vulnerabilities are related to improper input validation, buffer overflow, and information disclosure in the WibuKey component. Affected products include Siemens SICAM 230, SISHIP EMCS IMAC IPMS, and WinCC OA; Phoenix Contact MEVIEW3; COPA-DATA zenon and straton workbench; and Sprecher Automation SPRECON-V460 products. Successful exploitation may allow information disclosure, privilege escalation, or remote code execution on systems using these products.
- Network access to the affected industrial software product (no specific port required if embedded in the application)
- The affected product must be installed and running WibuKey DRM library version with the vulnerability
- No credentials or special configuration required for exploitation
Patching may require device reboot — plan for process interruption
/api/v1/advisories/3963bd8d-ae11-41bd-b2a2-b0df7836a17eGet OT security insights every Tuesday
Advisory breakdowns, a weekly summary, and incident analyses for the people actually defending OT environments. Free, no account required.