CVE-2012-5409 EXPLOIT
10.0
HIGH · CVSS 2.0 · EPSS 15.8% (pctl 97)
Patch early
A public exploit exists.
Description
AscoServer.exe in the server in Siemens SiPass integrated MP2.6 and earlier does not properly handle IOCP RPC messages received over an Ethernet network, which allows remote attackers to write data to any memory location and consequently execute arbitrary code via crafted messages, as demonstrated by an arbitrary pointer dereference attack or a buffer overflow attack.
Scoring
| CVSS | 10.0 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| EPSS | 15.79% — more likely to be exploited than 97% of all CVEs |
| Weakness | CWE-119 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2012-11-01 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| siemens | sipass integrated |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | SIEMENS Sipass Integrated 2.6 Ethernet Bus - Arbitrary Pointer Dereference | 2012-11-01 |
References
- http://ics-cert.us-cert.gov/advisories/ICSA-12-305-01
- http://ioactive.com/pdfs/SIEMENS_Sipass_Integrated_Ethernet_Bus_Arbitrary_Pointer_Dereference_V4.pdf
- http://secunia.com/advisories/50900
- http://www.osvdb.org/86129
- http://www.siemens.com/corporate-technology/pool/de/forschungsfelder/siemens_security_advisory_ssa-938777.pdf
- http://ics-cert.us-cert.gov/advisories/ICSA-12-305-01
- http://ioactive.com/pdfs/SIEMENS_Sipass_Integrated_Ethernet_Bus_Arbitrary_Pointer_Dereference_V4.pdf
- http://secunia.com/advisories/50900
- http://www.osvdb.org/86129
- http://www.siemens.com/corporate-technology/pool/de/forschungsfelder/siemens_security_advisory_ssa-938777.pdf
→ the Explorer · watch your stack · NVD