EMC Unisphere for VMAX 8.x before 8.0.3.4 sets up the Java Debugging Wire Protocol (JDWP) service, which allows remote attackers to execute arbitrary code via unspecified vectors.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0545
Reference (s):
- BUGTRAQ:20150625 ESA-2015-102: EMC Unisphere for VMAX Remote Code Execution Vulnerability
- URL: http://seclists.org/bugtraq/2015/Jun/129
- SECTRACK:1032732
- URL: http://www.securitytracker.com/id/1032732

