---
id: CVE-2025-5555
title: A vulnerability has been found in Nixdorf Wincor PORT IO Driver up to 1.0.0.1
summary: >-
  A vulnerability has been found in Nixdorf Wincor PORT IO Driver up to 1.0.0.1.
  This affects the function sub_11100 in the library wnport.sys of the component
  IOCTL Handler. Such manipulation leads to stack-based buffer overflow. Local
  ac…
severity: high
cvss: 7.8
cvssVector: 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'
cwe:
  - CWE-119
  - CWE-121
published: '2025-10-18'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T22:10:00.563'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-5555'
references:
  - url: >-
      https://b.iakb.org/2025/06/26/Wincor-Nixdorf-PORT-IO-Driver-Buffer-Overflow/
    label: cna@vuldb.com
  - url: 'https://download.dieboldnixdorf.com/'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?ctiid.329013'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?id.329013'
    label: cna@vuldb.com
  - url: 'https://vuldb.com/?submit.604823'
    label: cna@vuldb.com
tags:
  - nvd
epss: 0.00232
epssPercentile: 0.12918
ingestedAt: '2026-10-08T22:11:53.810Z'
---

## Overview

A vulnerability has been found in Nixdorf Wincor PORT IO Driver up to 1.0.0.1. This affects the function sub_11100 in the library wnport.sys of the component IOCTL Handler. Such manipulation leads to stack-based buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 3.0.0.1 is able to mitigate this issue. Upgrading the affected component is recommended. The vendor was contacted beforehand and was able to provide a patch very early.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
