Vulnerability CVE-2015-2033


Published: 2015-02-20

Description:
Anyterm Daemon in Infoblox Network Automation NetMRI before NETMRI-23483 allows remote attackers to execute arbitrary commands with root privileges via a crafted terminal/anyterm-module request.

CVSS2 => (AV:N/AC:L/Au:N/C:C/I:C/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
10/10
10/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Complete
Complete
Complete
Affected software
Infoblox -> Netmri 

 References:
http://unsecurityresearch.com/index.php?option=com_content&view=article&id=46&Itemid=53
http://www.securityfocus.com/bid/73423
https://support.infoblox.com/app/answers/detail/a_id/3666/kw/NETMRI-23483

Copyright 2024, cxsecurity.com

 

Back to Top