Zero Day Initiative Advisory 10-145 – This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Novell ZENWorks Remote Management. Access to a single node with Remote Management client installed and configured is required. The specific flaw exists within the storage of Remote Management authentication information on the client. The client utilizes a password stored in the registry that is common among all nodes. This can be exploited by an attacker to execute remote code on any target with the client installed.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/92624/ZDI-10-145.txt
Source: https://packetstormsecurity.com/files/92624/Zero-Day-Initiative-Advisory-10-145.html

