This script is Copyright (C) 2013-2014 Tenable Network Security, Inc.
A network management system on the remote host has a remote code
According to its self-reported version number, the version of Cisco
Prime Data Center Network Manager installed on the remote host has a
remote code execution vulnerability. Unauthorized users have access to
the JBoss Application Server Remote Method Invocation services. A
remote, unauthenticated attacker could exploit this to execute arbitrary
code as SYSTEM (on Windows) or root (on Linux).
This plugin determines if DCNM is vulnerable by checking the version
number displayed in the web interface. The web interface is not
available in older versions of DCNM.
See also :
Upgrade to Cisco Prime Data Center Network Manager 6.1(2) or later.
Risk factor :
Critical / CVSS Base Score : 10.0
CVSS Temporal Score : 8.3
Public Exploit Available : true