CVE-2021-40407 | Reolink RLC-410W 3.0.0.136_20121102 SetDdns API ddns->domain os command injection (TALOS-2021-1424)
A vulnerability has been found in Reolink RLC-410W 3.0.0.136_20121102 and classified as critical. This vulnerability affects unknown code of the component SetDdns API. The manipulation of the argument ddns->domain leads to os command injection.
This vulnerability was named CVE-2021-40407. The attack needs to be initiated within the local network. Furthermore, there is an exploit available.