Severity

6.5

Vulnerability Type

Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') (CWE-74) external link

Summary

A low privileged remote attacker can perform configuration changes of the firewall services, including packet forwarding or NAT through the FW_NAT.IN_IP environment variable which can lead to a DoS.