The Updater in Rackspace Openstack Windows Guest Agent for XenServer prior to 1.2.6.0 allows remote malicious users to execute arbitrary code via a crafted serialized .NET object to TCP port 1984, which triggers the download and extraction of a ZIP file that overwrites the Agent service binary.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
rackspace openstack windows guest agent |