APP: Persistent Systems Radia Client Automation Command Execution

This signature detects attempts to exploit a known vulnerability against Persistent Systems Radia Client Automation. A successful exploit can lead to the arbitrary command execution.

Extended Description

radexecd.exe in Persistent Systems Radia Client Automation (RCA) 7.9, 8.1, 9.0, and 9.1 allows remote attackers to execute arbitrary commands via a crafted request to TCP port 3465.

Affected Products

Persistent_systems radia_client_automation

References

CVE: CVE-2015-1497

Short Name
APP:PERSISTENT-COMMAND-EXEC
Severity
Major
Recommended
True
Recommended Action
Drop
Category
APP
Keywords
Automation CVE-2015-1497 Client Command Execution Persistent Radia Systems
Release Date
03/11/2015
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3337
Port
TCP/3465
False Positive
Unknown
Vendors

Persistent_systems

CVSS Score

10.0

Found a potential security threat?