← Back to Feed
Siemens License Server (SLS)
CVE-2026-69108CVE-2026-69109
August 13, 2026 · CISA (US-CERT) · Severity: CRITICAL
Siemens License Server contains a local privilege escalation vulnerability (CVE-2026-69108) due to an insecure sudoers policy and a path traversal flaw (CVE-2026-69109) allowing remote arbitrary file access. Affected versions are below 5.1 and 5.3 respectively, and Siemens recommends updating to the latest version immediately.
Key Takeaways
- Two vulnerabilities affect Siemens License Server versions before 5.1 and 5.3. CVE-2026-69108 allows local privilege escalation to root via insecure sudoers policy. CVE-2026-69109 enables remote arbitrary file reads through path traversal.