CVE-2015-1497 Information

Share on:

Description

radexecd.exe in Persistent Systems Radia Client Automation (RCA) 7.9 8.1 9.0 and 9.1 allows remote attackers to execute arbitrary commands via a crafted request to TCP port 3465.

Reference

http://osvdb.org/show/osvdb/118382 http://packetstormsecurity.com/files/130459/HP-Client-Automation-Command-Injection.html http://www.exploit-db.com/exploits/36169 http://www.exploit-db.com/exploits/36206 http://www.securityfocus.com/bid/72612 http://www.zerodayinitiative.com/advisories/ZDI-15-038/ https://support.accelerite.com/hc/en-us/articles/203659814-Accelerite-releases-solutions-and-best-practices-to-enhance-the-security-for-RBAC-and-Remote-Notify-features https://www.exploit-db.com/exploits/40491/