CVE-2012-3009

CWE-2644 documents4 sources
Severity
8.5HIGH
EPSS
0.3%
top 46.08%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 16
Latest updateMay 17

Description

Siemens COMOS before 9.1 Patch 413, 9.2 before Update 03 Patch 023, and 10.0 before Patch 005 allows remote authenticated users to obtain database administrative access via unspecified method calls.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 6.8 | Impact: 10.0

Affected Packages1 packages

NVDsiemens/comos9.1+2

🔴Vulnerability Details

2
GHSA
GHSA-jj22-cwv6-836v: Siemens COMOS before 92022-05-17
CVEList
CVE-2012-3009: Siemens COMOS before 92012-08-16
CVE-2012-3009 (HIGH CVSS 8.5) | Siemens COMOS before 9.1 Patch 413 | cvebase.io