<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T16:08:26.433685+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2025-avi-0677</id>
    <title>certfr-2025-avi-0677 — De multiples vulnérabilités ont été découvertes dans les produits Siemens. Certaines d'entre elles permettent à un atta…</title>
    <updated>2026-10-02T16:08:26.445501+00:00</updated>
    <content>certfr-2025-avi-0677</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2025-avi-0677"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-364582</id>
    <title>EUVD-2026-364582</title>
    <updated>2026-10-02T16:08:26.445543+00:00</updated>
    <content>EUVD-2026-364582</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-364582"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2025-47809</id>
    <title>fkie_cve-2025-47809</title>
    <updated>2026-10-02T16:08:26.445559+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Wibu CodeMeter before 8.30a sometimes allows privilege escalation immediately after installation (before a logoff or reboot). For exploitation, there must have been an unprivileged installation with UAC, and the CodeMeter Control Center component must be installed, and the CodeMeter Control Center component must not have been restarted. In this scenario, the local user can navigate from Import License to a privileged instance of Windows Explorer.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2025-47809"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-2rfr-r5fg-2857</id>
    <title>GHSA-2rfr-r5fg-2857</title>
    <updated>2026-10-02T16:08:26.445589+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Wibu CodeMeter before 8.30a sometimes allows privilege escalation immediately after installation (before a logoff or reboot). For exploitation, there must have been an unprivileged installation with UAC, and the CodeMeter Control Center component must be installed, and the CodeMeter Control Center component must not have been restarted. In this scenario, the local user can navigate from Import License to a privileged instance of Windows Explorer.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-2rfr-r5fg-2857"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/icsa-25-226-05</id>
    <title>ICSA-25-226-05 — Siemens IAM Client</title>
    <updated>2026-10-02T16:08:26.445607+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p>WIBU Systems published information about a privilege escalation vulnerability under a certain circumstances and associated fix releases of CodeMeter Runtime, a product provided by WIBU Systems and used in several Siemens industrial products.</p>
<p>Siemens has released new versions for the affected products and recommends to update to the latest versions.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/icsa-25-226-05"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ncsc-2026-0346</id>
    <title>NCSC-2026-0346 — Kwetsbaarheden verholpen in Siemens producten</title>
    <updated>2026-10-02T16:08:26.445627+00:00</updated>
    <content>NCSC-2026-0346</content>
    <link href="https://cve.radiocsirt.org/vuln/ncsc-2026-0346"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/sca-2025-0014</id>
    <title>SCA-2025-0014 — CodeMeter vulnerablity affects SICK CODE-LOC and SICK LIDAR-LOC</title>
    <updated>2026-10-02T16:08:26.445689+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Wibu CodeMeter before 8.30a sometimes allows privilege escalation immediately after installation (before a logoff or reboot). For exploitation, there must have been an unprivileged installation with UAC, and the CodeMeter Control Center component must be installed, and the CodeMeter Control Center component must not have been restarted. In this scenario, the local user can navigate from Import License to a privileged instance of Windows Explorer.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/sca-2025-0014"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ssa-201595</id>
    <title>SSA-201595 — SSA-201595: Privilege Escalation Vulnerability in WIBU CodeMeter Runtime Affecting the Desigo CC Product Family and SEN…</title>
    <updated>2026-10-02T16:08:26.445707+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Wibu CodeMeter before 8.30a sometimes allows privilege escalation immediately after installation (before a logoff or reboot). For exploitation, there must have been an unprivileged installation with UAC, and the CodeMeter Control Center component must be installed, and the CodeMeter Control Center component must not have been restarted. In this scenario, the local user can navigate from Import License to a privileged instance of Windows Explorer.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ssa-201595"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2025-064</id>
    <title>VDE-2025-064 — Phoenix Contact: Products utilizing WIBU-SYSTEMS CodeMeter Runtime Windows Installer have a privilege escalation</title>
    <updated>2026-10-02T16:08:26.445723+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A local privilege escalation vulnerability in Phoenix Contact products utilizing WIBU-SYSTEMS CodeMeter Runtime allows users to gain admin rights on freshly installed systems. The CodeMeter  Control Center starts with elevated privileges and retains them until restarted, enabling unauthorized access to admin tools like cmd.exe.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2025-064"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/vde-2026-007</id>
    <title>VDE-2026-007 — TRUMPF: Multiple products affected by Wibu CodeMeter vulnerability</title>
    <updated>2026-10-02T16:08:26.445738+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>The TRUMPF product versions listed below include a Wibu CodeMeter component that is vulnerable to a privilege escalation vulnerability through the CodeMeter installer on Windows.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/vde-2026-007"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1076</id>
    <title>WID-SEC-W-2025-1076 — Wibu-Systems CodeMeter: Schwachstelle ermöglicht Privilegieneskalation</title>
    <updated>2026-10-02T16:08:26.445752+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann eine Schwachstelle in Wibu-Systems CodeMeter ausnutzen, um seine Privilegien zu erhöhen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2025-1076"/>
  </entry>
</feed>
