An attacker can connect to these ports directly to retrieve the XML stream without authentication.
Detailed host lists, IP addresses, OS versions, CPU/memory usage, and custom metrics. ganglia xml grid monitor exploit
Tools like Nmap can be used to scan for and retrieve this data using the ganglia-info NSE script. 2. Remote Code Execution (CVE-2012-3548) An attacker can connect to these ports directly