← Back to Feed

Siemens License Server (SLS)

CVE-2026-69108CVE-2026-69109

August 13, 2026 · CISA (US-CERT) · Severity: CRITICAL

Siemens License Server contains a local privilege escalation vulnerability (CVE-2026-69108) due to an insecure sudoers policy and a path traversal flaw (CVE-2026-69109) allowing remote arbitrary file access. Affected versions are below 5.1 and 5.3 respectively, and Siemens recommends updating to the latest version immediately.

Key Takeaways

  • Two vulnerabilities affect Siemens License Server versions before 5.1 and 5.3. CVE-2026-69108 allows local privilege escalation to root via insecure sudoers policy. CVE-2026-69109 enables remote arbitrary file reads through path traversal.
☕ Buy a Coffee