CVE-2012-3847 describes a denial-of-service vulnerability in Invensys Wonderware SuiteLink's slssvc.exe, affecting Invensys InTouch 2012 and Wonderware Application Server 2012. An unauthenticated remote attacker can exploit this by sending a long Unicode string, leading to resource consumption. With a CVSS score of 5.0 (AV:N/AC:L/Au:N/C:N/I:N/A:P), it is a low-severity vulnerability with no known public exploits, Metasploit modules, or KEV catalog inclusion. Community discussion and media coverage for this CVE are minimal, indicating a low level of public attention and no evidence of active exploitation.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2012CPE matchmatch criteria | cpe:2.3:a:invensys:intouch:2012:*:*:*:*:*:*:* | ||
2012CPE matchmatch criteria | cpe:2.3:a:invensys:wonderware_application_server:2012:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.