CVE-2011-4531 describes a denial-of-service vulnerability in Siemens Automation License Manager (ALM) versions 4.0 through 5.1+SP1+Upd1. Remote attackers can crash the ALM daemon by sending crafted content within specific commands, leading to a NULL pointer dereference. This vulnerability has a CVSS score of 5.0, indicating a medium severity, with low attack complexity and no authentication required, resulting in partial availability impact. While there is an ExploitDB entry for multiple ALM vulnerabilities, there is no indication of active exploitation, and it lacks Metasploit or Nuclei modules, with minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 5.1CPE matchmatch criteria | cpe:2.3:a:siemens:automation_license_manager:*:sp1:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.