Lucene search

K
cveIcscertCVE-2012-4691
HistoryDec 18, 2012 - 12:30 p.m.

CVE-2012-4691

2012-12-1812:30:05
CWE-399
icscert
web.nvd.nist.gov
34
siemens
alm
memory leak
cve-2012-4691
denial of service
nvd

CVSS2

3.3

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:A/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.7

Confidence

Low

EPSS

0.002

Percentile

54.9%

Memory leak in Siemens Automation License Manager (ALM) 4.x and 5.x before 5.2 allows remote attackers to cause a denial of service (memory consumption) via crafted packets.

Affected configurations

Nvd
Node
siemensautomation_license_managerMatch4.0
OR
siemensautomation_license_managerMatch5.0
OR
siemensautomation_license_managerMatch5.1
OR
siemensautomation_license_managerMatch5.1sp1
VendorProductVersionCPE
siemensautomation_license_manager4.0cpe:2.3:a:siemens:automation_license_manager:4.0:*:*:*:*:*:*:*
siemensautomation_license_manager5.0cpe:2.3:a:siemens:automation_license_manager:5.0:*:*:*:*:*:*:*
siemensautomation_license_manager5.1cpe:2.3:a:siemens:automation_license_manager:5.1:*:*:*:*:*:*:*
siemensautomation_license_manager5.1cpe:2.3:a:siemens:automation_license_manager:5.1:sp1:*:*:*:*:*:*

CVSS2

3.3

Attack Vector

ADJACENT_NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:A/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.7

Confidence

Low

EPSS

0.002

Percentile

54.9%