distcc 2.x, as used in XCode 1.5 and others, when not configured to restrict access to the server port, allows remote attackers to execute arbitrary commands via compilation jobs, which are executed by the server without authorization checks.
https://github.com/ocfagb/hacktivity-vulns-exploits-lab
https://github.com/aish19siddiqua-commits/mtechweek_04
https://github.com/mukidulislamzihad/m2-vulnerability-assessment
https://github.com/sanasimran1403-jpg/pentest-report-generator
https://github.com/asibechehSav/legacy-systems-security-assessment
https://github.com/sudichai/cve-destroyer
https://github.com/animeshthube/nessus-vulnerability-assessment
https://github.com/kamatmansi/OpenVAS
https://github.com/kamatmansi/Advanced-Web-Vulnerability-Scanner-OpenVAS
https://github.com/olawale-sec/network-vulnerability-assessment
https://github.com/micheaol/distccd_rce_CVE-2004-2687
https://github.com/Alam686/openvas-vulnerability-assessment
https://github.com/arkede/cve-2004
https://github.com/noob-hacker572/CVE-Exploits
https://github.com/ss0wl/distcc_v1_cve_2004_2687
https://github.com/ss0wl/CVE-2004-2687_distcc_v1
https://github.com/sukraken/distcc_exploit.py
https://github.com/k4miyo/CVE-2004-2687
http://lists.samba.org/archive/distcc/2004q3/002562.html
http://lists.samba.org/archive/distcc/2004q3/002550.html
http://distcc.samba.org/security.html
http://archives.neohapsis.com/archives/bugtraq/2005-03/0183.html