Skip to main navigation Skip to main content Skip to page footer

Security

iba AG’s product security team, ProductCERT, acts holistically to identify security threats and issues with the aim of improving iba AG’s products.

Green background with a circular digital interface design.

ProductCERT maintains relationships with partners and security experts to test the security of iba products against current threat scenarios and to advance product security.

iba AG develops recommendations for the secure operation of iba components in industry. In this way, it makes it easier for operators to cope with the constantly growing threat situation in the field of IT security.

IDCVSS Base ScoreDocument TitleVersionLast Update
IBA-2026-10Third-Party Library Vulnerabilities in MimeKit and MailKit Affecting Email CommunicationV1.0
IBA-2026-09CVE-2026-32178 - .NET Spoofing Vulnerability in Bundled Microsoft ComponentsV1.0
IBA-2026-089.8.NET Deserialization Vulnerability in Client–Server CommunicationV1.0
IBA-2026-07CVE‑2026‑26171 – Denial‑of‑Service Vulnerability in Third‑Party .NET LibraryV1.2
IBA-2026-06Multiple vulnerabilities in the third‑party component OpenSSLV1.0
IBA-2026-05Multiple vulnerabilities in the third‑party component libcurlV1.0
IBA-2026-047.2Memory Corruption Vulnerability in External SQLite DependencyV1.2
IBA-2026-037.2Privilege Escalation Vulnerability in the iba Install AgentV1.2
IBA-2026-028.7SQL Data Provider Security Feature BypassV1.0
IBA-2026-016.9Exposure of Internal FunctionsV1.0
IBA-2025-0410Exposure of the file systemV1.1
IBA-2025-036.8ibaDatCoordinator Logs Password in CleartextV1.0
IBA-2025-027.7Privilege Escalation through CodeMeter Installer on WindowsV1.6
IBA-2025-018.7The same symmetric key is used for signing authentication tokens.V1.0
IBA-2024-037.5BouncyCastle.Cryptography component vulnerabilityV1.0
IBA-2024-028.1npgsql component vulnerabilityV1.0
IBA-2024-015.9WinSCP component vulnerabilityV1.0
IBA-2022-057.5OpenSSL component vulnerabilityV1.0
IBA-2022-042.8Hardcoded credentialsV1.0
IBA-2022-036.1Credentials stored in plaintextV1.0
IBA-2022-024.8Unable to establish OPC DA connection after installing patch for CVE-2021-26414V1.0
IBA-2022-014.2ibaPDA OPC UA server allowed in some cases connections with untrusted certificatesV1.0
IBA-2021-0410.0maxView Storage Manager Remote Code Execution VulnerabilityV1.0
IBA-2021-037.1CodeMeter Runtime for Windows: Denial of Service (DoS)V1.0
IBA-2021-029.1CodeMeter Runtime Network Server: Heap Leak and Denial of ServiceV1.0
IBA-2021-017.8Local privilege escalationV1.0
IBA-2020-01WIBU Systems CodeMeter Runtime Vulnerabilities in iba ProductsV1.0

Contact

ProductCERT also acts as a central point of contact for security teams and developers, industry groups and vendors to report potential security vulnerabilities in iba products. It coordinates and maintains communication with all involved parties, both internal and external, to respond appropriately to identified security issues. It also handles the public reporting of security issues related to iba products.

Email: psirt(at)iba-ag.com

Resources

What would you like to do today?

By choosing a country, my request will be forwarded to the country branch of iba AG responsible for sales and support.Privacy Policy