CiscoWorks Internetwork Performance Monitor Arbitrary Command Execution - Advisories - Secunia

Cisco Worksにcasuserという権限のある権限で任意のコードが実行できるそうです。

A vulnerability has been reported in CiscoWorks Internetwork Performance Monitor, which can be exploited by malicious people to compromise a vulnerable system.
The vulnerability is caused due to the application binding a command shell to a random port on the affected system. This can be exploited to execute arbitrary commands with "casuser" privileges on Solaris, and with SYSTEM privileges on Windows.
The vulnerability affects version 2.6 on Windows and Solaris.