AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2012-5409

HIGH · CVSS 10 EPSS 15.79%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-11-01 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2012-5409
Severity
HIGH
CVSS
10
EPSS
15.79%

Original NVD Description

AscoServer.exe in the server in Siemens SiPass integrated MP2.6 and earlier does not properly handle IOCP RPC messages received over an Ethernet network, which allows remote attackers to write data to any memory location and consequently execute arbitrary code via crafted messages, as demonstrated by an arbitrary pointer dereference attack or a buffer overflow attack.