Description
The D-Link DSL6740C modem has an OS Command Injection vulnerability, allowing remote attackers with administrator privileges to inject and execute arbitrary system commands through a specific functionality provided by SSH and Telnet.
Problem types
CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
Product status
Any version
References
www.twcert.org.tw/tw/cp-132-8223-f6da0-1.html 
www.twcert.org.tw/en/cp-139-8230-11430-2.html