Severity

6.5

Vulnerability Type

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') (CWE-74) external link

Summary

A low privileged remote attacker can perform configuration changes of the ospf service through OSPF_INTERFACE.SIMPLE_KEY, OSPF_INTERFACE.DIGEST_KEY environment variables which can lead to a DoS.