CVE-2012-5896 EXPLOIT
10.0
HIGH · CVSS 2.0 · EPSS 69.4% (pctl 99)
Patch early
A public exploit exists.
Description
The Annotation Objects Extension ActiveX control in AnnotateX.dll in Quest InTrust 10.4.0.853 and earlier does not properly implement the Add method, which allows remote attackers to execute arbitrary code via a memory address in the first argument, related to an "uninitialized pointer."
Scoring
| CVSS | 10.0 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| EPSS | 69.39% — more likely to be exploited than 99% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2012-11-17 |
| Last modified | 2026-06-16 |
Affected (1)
| Vendor | Product |
|---|---|
| quest | intrust |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Quest InTrust - Annotation Objects Uninitialized Pointer (Metasploit) | 2012-04-13 |
| exploit-db | Quest InTrust 10.4.x - Annotation Objects ActiveX Control 'AnnotateX.dll' Uninitialized Pointer Remote Code Execution | 2012-03-28 |
References
- http://archives.neohapsis.com/archives/bugtraq/2012-03/0153.html
- http://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/exploits/windows/browser/intrust_annotatex_add.rb
- http://osvdb.org/80662
- http://packetstormsecurity.org/files/111312/Quest-InTrust-10.4.x-Annotation-Objects-Code-Execution.html
- http://packetstormsecurity.org/files/111853/Quest-InTrust-Annotation-Objects-Uninitialized-Pointer.html
- http://secunia.com/advisories/48566
- http://www.exploit-db.com/exploits/18674
- http://www.securityfocus.com/bid/52765
- https://exchange.xforce.ibmcloud.com/vulnerabilities/74448
- http://archives.neohapsis.com/archives/bugtraq/2012-03/0153.html
- http://dev.metasploit.com/redmine/projects/framework/repository/entry/modules/exploits/windows/browser/intrust_annotatex_add.rb
- http://osvdb.org/80662
- http://packetstormsecurity.org/files/111312/Quest-InTrust-10.4.x-Annotation-Objects-Code-Execution.html
- http://packetstormsecurity.org/files/111853/Quest-InTrust-Annotation-Objects-Uninitialized-Pointer.html
- http://secunia.com/advisories/48566
- http://www.exploit-db.com/exploits/18674
- http://www.securityfocus.com/bid/52765
- https://exchange.xforce.ibmcloud.com/vulnerabilities/74448
→ the Explorer · watch your stack · NVD