OS Command Injection - CVE-2016-4965
Published: September 8, 2016 / Updated: September 9, 2016
Detailed vulnerability description
The vulnerability allows a remote authenticated user to obtain elevated privileges on the device.
The vulnerability exists due to insufficient verification if user-supplied data passed via "graph" HTTP GET parameter to diagnosis_control.php. A remote authenticated user with access to nslookup functionality can inject and execute arbitrary OS commands on vulnerable device with privileges of root account.
Successful exploitation of this vulnerability will allow authenticated user to obtain elevated privileges on vulnerable device.