vendor:
SiPass Integrated
by:
Lucas Apa
9
CVSS
CRITICAL
Arbitrary Pointer Dereference
119
CWE
Product Name: SiPass Integrated
Affected Version From: MP2.6 and earlier
Affected Version To: MP2.6 and earlier
Patch Exists: YES
Related CWE: TBD
CPE: a:siemens:sipass_integrated
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: LAN/WAN/PSTN
2012
SIEMENS Sipass Integrated 2.6 Ethernet Bus Arbitrary Pointer Dereference
The vulnerability exists within AscoServer.exe during the handling of RPC messages over the Ethernet Bus. Insufficient sanity checking allows remote and unauthenticated attackers to corrupt a Heap-Allocated Structure and then dereference an arbitrary pointer. This flaw allows remote attackers to execute arbitrary code on the target system, under the context of the SYSTEM account, where the vulnerable versions of SIEMENS SiPass Integrated are installed. More advanced payloads could modify the behavior of the application’s internal controllers to unlock doors, control specific hardware, or expose businesses to other security risks.
Mitigation:
The best way to mitigate this vulnerability is to upgrade to the latest version of SIEMENS SiPass Integrated.