CVE-2012-2511 describes a denial-of-service vulnerability in the DiagTraceAtoms function of the disp+work.exe component within the Dispatcher in SAP NetWeaver 7.0 EHP1 and EHP2. An unauthenticated remote attacker can exploit this flaw by sending a specially crafted SAP Diag packet, leading to a daemon crash. While not actively exploited in the wild, public exploit code exists, and its FAUCET Risk Score of 93/100 indicates a high potential impact despite low community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
7.0CPE matchmatch criteria | cpe:2.3:a:sap:netweaver:7.0:ehp1:*:*:*:*:*:* | ||
7.0CPE matchmatch criteria | cpe:2.3:a:sap:netweaver:7.0:ehp2:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.