CVE-2012-2515
Multiple stack-based buffer overflows in the KeyHelp.KeyCtrl.1 ActiveX control in KeyHelp.ocx 1.2.312 in KeyWorks KeyHelp Module (aka the HTML Help component), as used in EMC Documentum ApplicationXtender Desktop 5.4.
EMC Captiva Quickscan Pro 4.6 SP1.
GE Intelligent Platforms Proficy Historian 3.1, 3.5, 4.0, and 4.5.
GE Intelligent Platforms Proficy HMI/SCADA iFIX 5.0 and 5.1.
GE Intelligent Platforms Proficy Pulse 1.0.
GE Intelligent Platforms Proficy Batch Execution 5.6.
GE Intelligent Platforms SI7 I/O Driver 7.20 through 7.42.
and other products, allow remote attackers to execute arbitrary code via a long string in the second argument to the (1) JumpMappedID or (2) JumpURL method.
- EPSS ≥ 0.50 - high probability of exploitation in the next 30 days
- EPSS percentile: top 2% of all CVEs by exploitation likelihood
- Metasploit module exists (rank: Average)
- Public exploit or PoC is available
- CVSS base score ≥ 7.0
ATT&CK techniques
2Techniques this CVE enables - linked via CWECAPECATT&CK. High◆ = named directly in ATT&CK or Nuclei templates.
▤ Build a SIEM detection for these techniquesCAPEC attack patterns
12Attack patterns this CVE enables - the bridge from weakness to ATT&CK technique.