FTA, top:
> Attack surface: NFS server with kgssapi.ko loaded (port 2049/TCP)
Not sure who would run an internet exposed NFS server. Shodan would know.
You also need a valid Kerberos ticket to get to the point where you can exploit.
You also need a valid Kerberos ticket to get to the point where you can exploit.