CVE-2017-17020 | D-Link DCS-5009/DCS-5010/DCS-5020L alphapd /setSystemAdmin AdminID command injection (EDB-44580)
A vulnerability classified as critical has been found in D-Link DCS-5009, DCS-5010 and DCS-5020L. Affected is an unknown function of the file /setSystemAdmin of the component alphapd. The manipulation of the argument AdminID leads to command injection.
This vulnerability is traded as CVE-2017-17020. It is possible to launch the attack remotely. Furthermore, there is an exploit available.