Persistent Systems Radia Client Automation Agent Command Injection

Critical Nessus Plugin ID 86427

Synopsis

The Persistent Systems Radia Client Automation agent listening on the remote port is affected by a command injection vulnerability.

Description

The Persistent Systems Radia Client Automation (formerly HP Client Automation) agent listening on the remote port is affected by a command execution vulnerability due to a flaw in the radexecd.exe component. An unauthenticated, remote attacker can exploit this to execute arbitrary commands in the context of the radexecd process.

Solution

See the vendor advisory for a possible solution.

See Also

http://www.nessus.org/u?56b928e5

https://www.zerodayinitiative.com/advisories/ZDI-15-038/

Plugin Details

Severity: Critical

ID: 86427

File Name: radexecd_cve-2015-1497.nasl

Version: 1.7

Type: remote

Family: General

Published: 2015/10/19

Modified: 2018/11/15

Dependencies: 11936, 27627

Risk Information

Risk Factor: Critical

CVSS v2.0

Base Score: 10

Temporal Score: 8.3

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

Temporal Vector: CVSS2#E:F/RL:OF/RC:C

Vulnerability Information

CPE: cpe:/a:persistent_systems:radia_client_automation, cpe:/a:hp:client_automation_enterprise

Required KB Items: Services/radexecd

Excluded KB Items: global_settings/supplied_logins_only

Exploit Available: true

Exploit Ease: Exploits are available

Exploited by Nessus: true

Vulnerability Publication Date: 2015/02/10

Exploitable With

Core Impact

Metasploit (HP Client Automation Command Injection)

Reference Information

CVE: CVE-2015-1497

BID: 72612

EDB-ID: 36169, 36206