5
CVE-2012-3796
- EPSS 10.9%
- Veröffentlicht 25.06.2012 17:55:01
- Zuletzt bearbeitet 16.06.2026 23:43:54
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Pro-face WinGP PC Runtime 3.1.00 and earlier, and ProServr.exe in Pro-face Pro-Server EX 1.30.000 and earlier, allows remote attackers to obtain sensitive information from daemon memory via a crafted packet with a certain opcode.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Pro-face ≫ Pro-server Ex Version <= 1.30.000
Pro-face ≫ Pro-server Ex Version1.21.000
Pro-face ≫ Pro-server Ex Version1.23.000
Pro-face ≫ Pro-server Ex Version1.24.200
Pro-face ≫ Wingp Pc Runtime Version <= 3.1.00
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 10.9% | 0.953 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
http://aluigi.org/adv/proservrex_1-adv.txt
http://ics-cert.us-cert.gov/advisories/ICSA-12-179-01
http://secunia.com/advisories/49172
http://www.securityfocus.com/bid/53499
https://www.hmisource.com/otasuke/download/update/server_ex/server_ex/Readme_E.txt
https://www.hmisource.com/otasuke/news/2012/0606.html