cbcvebase.
CVE-2012-4341
published 2012-08-15

CVE-2012-4341: Multiple stack-based buffer overflows in msg_server.exe in SAP NetWeaver ABAP 7.x allow remote attackers to cause a denial of service (crash) and execute…

PriorityP348critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
8.70%
94.5th percentile
Multiple stack-based buffer overflows in msg_server.exe in SAP NetWeaver ABAP 7.x allow remote attackers to cause a denial of service (crash) and execute arbitrary code via a (1) long parameter value, (2) crafted string size field, or (3) long Parameter Name string in a package with opcode 0x43 and sub opcode 0x4 to TCP port 3900.

Affected

3 ranges
VendorProductVersion rangeFixed in
sapnetweaver_abap
sapnetweaver_abap
sapnetweaver_abap
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.