Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')
(CWE-74)
Summary
A low privileged remote attacker can perform configuration changes of the firewall services, including packet forwarding or NAT through the FW_NAT.IN_IP environment variable which can lead to a DoS.