Unrated severityNVD Advisory· Published Aug 16, 2012· Updated Apr 29, 2026
CVE-2012-3009
CVE-2012-3009
Description
Siemens COMOS before 9.1 Patch 413, 9.2 before Update 03 Patch 023, and 10.0 before Patch 005 allows remote authenticated users to obtain database administrative access via unspecified method calls.
Affected products
3cpe:2.3:a:siemens:comos:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:siemens:comos:*:*:*:*:*:*:*:*range: <=9.1
- cpe:2.3:a:siemens:comos:10.0:*:*:*:*:*:*:*
- cpe:2.3:a:siemens:comos:9.2:03:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.siemens.com/corporate-technology/pool/de/forschungsfelder/siemens_security_advisory_ssa-312568.pdfnvdVendor Advisory
- www.us-cert.gov/control_systems/pdf/ICSA-12-227-01.pdfnvdUS Government Resource
News mentions
0No linked articles in our index yet.