ics-cert.us-cert.gov
http://ics-cert.us-cert.gov/advisories/ICSA-12-305-01 CVE-2012-5409
SIEMENS Sipass Integrated 2.6 Ethernet Bus - Arbitrary Pointer Dereference
Record summary
CVE-2012-5409 has a selected CVSS score of 10.0; EIP currently links 1 catalogued exploit.
Description
AscoServer.exe in the server in Siemens SiPass integrated MP2.6 and earlier does not properly handle IOCP RPC messages received over an Ethernet network, which allows remote attackers to write data to any memory location and consequently execute arbitrary code via crafted messages, as demonstrated by an arbitrary pointer dereference attack or a buffer overflow attack.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBSIEMENS Sipass Integrated 2.6 Ethernet Bus - Arbitrary Pointer DereferenceExploitDB exploitby Lucas ApaNot analyzed1 file
References
6ioactive.com
http://ioactive.com/pdfs/SIEMENS_Sipass_Integrated_Ethernet_Bus_Arbitrary_Pointer_Dereference_V4.pdf 50900Third-party advisory
http://secunia.com/advisories/50900 86129vdb entry
http://www.osvdb.org/86129 siemens.comConfirmation
http://www.siemens.com/corporate-technology/pool/de/forschungsfelder/siemens_security_advisory_ssa-938777.pdf nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2012-5409