Remote Code Execution via Java RMI Input Port in GE MDS PulseNET and MDS PulseNET Enterprise 3.2.1 and Prior

Remote Code Execution via Java RMI Input Port in GE MDS PulseNET and MDS PulseNET Enterprise 3.2.1 and Prior

CVE-2018-10611 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

Java remote method invocation (RMI) input port in GE MDS PulseNET and MDS PulseNET Enterprise version 3.2.1 and prior may be exploited to allow unauthenticated users to launch applications and support remote code execution through web services.

Learn more about our Web App Pen Testing.