CVE-2017-6884 | ZyXEL EMG2926 V1.00(AAQT.4)b8 nslookup ping_ip os command injection (EDB-41782 / ID 2026105)
A vulnerability classified as critical has been found in ZyXEL EMG2926 V1.00(AAQT.4)b8. Affected is the function nslookup of the file expert/maintenance/diagnostic/nslookup. The manipulation of the argument ping_ip leads to os command injection.
This vulnerability is traded as CVE-2017-6884. It is possible to launch the attack remotely. Furthermore, there is an exploit available.