7.5
CVSSv2

CVE-2011-4529

Published: 08/01/2012 Updated: 09/01/2012
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple buffer overflows in Siemens Automation License Manager (ALM) 4.0 up to and including 5.1+SP1+Upd1 allow remote malicious users to execute arbitrary code via a long serialid field in an _licensekey command, as demonstrated by the (1) check_licensekey or (2) read_licensekey command.

Vulnerable Product Search on Vulmon Subscribe to Product

siemens automation license manager

Exploits

####################################################################### Luigi Auriemma Application: Siemens Automation License Manager supportautomationsiemenscom/WW/llisapidll?func=cslibcsinfo&lang=en&siteid=cseus&aktprim=0&extranet=standard&viewreg=WW&objid=10805384 ...