Lucene search

K
exploitdbMichel ArboiEDB-ID:32711
HistoryJan 07, 2009 - 12:00 a.m.

Multiple CA Service Management Products - Remote Command Execution

2009-01-0700:00:00
Michel Arboi
www.exploit-db.com
12

AI Score

7.4

Confidence

Low

source: https://www.securityfocus.com/bid/33161/info

Multiple CA Service Management products are prone to a vulnerability that attackers can leverage to execute arbitrary commands. This issue is the result of insufficient access restrictions.

Successful attacks can compromise the affected application and possibly the underlying computer.

The following applications are vulnerable:

Service Metric Analysis 11.0, 11.1, and 11.1 SP1
Service Level Management 3.5 

Submitting the following command through netcat or telnet is sufficient to exploit this issue:

[ipconfig /all] 

AI Score

7.4

Confidence

Low