Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2012-3009

EPSS 0.31% · P54
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2012-3009

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Siemens COMOS before 9.1 Patch 413, 9.2 before Update 03 Patch 023, and 10.0 before Patch 005 allows remote authenticated users to obtain database administrative access via unspecified method calls.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Siemens COMOS 未明安全绕过漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Siemens COMOS是集成生命周期工程领域内全球领先的软件解决方案供应商。 Siemens COMOS中存在漏洞,可被恶意攻击者利用绕过某些安全限制。该漏洞源于与‘published’方法相关的未明错误。攻击者可利用该漏洞获取对数据库的管理访问权限。成功的利用需要有数据库的读取访问权限。早期版本至9.1 Patch 413版本、9.2 Update 03 Patch 023、10.0 Patch 005、10.0 SP1版本中存在漏洞。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2012-3009

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2012-3009

Please Login to view more intelligence information

Same Patch Batch · n/a · 2012-08-16 · 23 CVEs total

CVE-2012-4288Wireshark XTP解析器数字错误漏洞
CVE-2012-4298Wireshark 整数符号错误漏洞
CVE-2012-4297Wireshark GSM RLC MAC解析器缓冲区溢出漏洞
CVE-2012-4296Wireshark RTPS2解析器资源管理错误漏洞
CVE-2012-4295Wireshark ERF解析器数组索引错误漏洞
CVE-2012-4294Wireshark ERF解析器缓冲区溢出漏洞
CVE-2012-4293Wireshark EtherCAT Mailbox解析器拒绝服务漏洞
CVE-2012-4292Wireshark STUN解析器输入验证漏洞
CVE-2012-4291Wireshark CIP解析器资源管理错误漏洞
CVE-2012-4290Wireshark CTDB解析器资源管理错误漏洞
CVE-2012-4289Wireshark AFP解析器资源管理错误漏洞
CVE-2012-2283多款Iomega网络存储设备 安全绕过漏洞
CVE-2012-4287Wireshark MongoDB解析器资源管理错误漏洞
CVE-2012-4286Wireshark pcap-ng文件解析器数字错误漏洞
CVE-2012-4285Wireshark DCP ETSI解析器数字错误漏洞
CVE-2012-3251HP Service Center Server 拒绝服务漏洞
CVE-2012-3250HP Service Manager Server 跨站脚本漏洞
CVE-2012-3249HP Fortify Software Security Center 多个未明信息泄露漏洞
CVE-2012-3248HP Fortify Software Security Center 多个未明信息泄露漏洞
CVE-2012-3247HP Integrity Server 未明拒绝服务漏洞

Showing top 20 of 23 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2012-3009

No comments yet


Leave a comment