CVE-2013-6795: Rackspace Openstack Windows Guest Agent

High severity, CVSS 9.3. EPSS: 5.3% chance of exploitation in the next 30 days.

The Updater in Rackspace Openstack Windows Guest Agent for XenServer before 1.2.6.0 allows remote attackers to execute arbitrary code via a crafted serialized .NET object to TCP port 1984, which triggers the download and extraction of a ZIP file that overwrites the Agent service binary.

Affected products

  • Rackspace Openstack Windows Guest Agent: up to and including 1.2.5.0

Published 2013-12-24. Last modified 2026-06-17.