nslookup of the file expert/maintenance/diagnostic/nslookup. The manipulation of the argument ping_ip leads to os command injection.This vulnerability is documented as CVE-2017-6884. The attack can be initiated remotely. Additionally, an exploit exists.