This script is Copyright (C) 2016 Tenable Network Security, Inc.
The remote Gentoo host is missing one or more security-related
The remote host is affected by the vulnerability described in GLSA-201607-09
(Commons-BeanUtils: Arbitrary code execution)
Apache Commons BeanUtils does not suppress the class property, which
allows for the manipulation of the ClassLoader.
Remote attackers could potentially execute arbitrary code with the
privileges of the process.
There is no known workaround at this time.
See also :
All Commons BeanUtils users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose
Risk factor :
High / CVSS Base Score : 7.5
Public Exploit Available : true