How to Buy
This script is Copyright (C) 2009-2016 Tenable Network Security, Inc.
The remote service seems to allow execution of arbitrary commands.
The remote host seems to be running a version of the Intel LANDesk
Common Base Agent (CBA) that allows the contents of a specially
crafted packet to be passed as an argument to 'CreateProcessA()' to be
executed on the remote host with SYSTEM privileges.
See also :
If using Symantec AntiVirus Corporate Edition, Symantec Client
Security, or Symantec Endpoint Protection, apply the appropriate
update as described in Symantec's advisory referenced above.
Otherwise, contact the application's vendor for an update.
Risk factor :
Critical / CVSS Base Score : 10.0
CVSS Temporal Score : 8.3
Public Exploit Available : true
Nessus Plugin ID: 38664 (landesk_cba_createprocessa_cmd_exec.nasl)
Bugtraq ID: 34671
CVE ID: CVE-2009-1429
Get Nessus Professional to scan unlimited IPs, run compliance checks & more
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.