Belkin Vulnerability Key Information Vendor: Belkin Product: F9K1122 Version: 1.00.33 Type: Remote Command Execution Author: Jiaqian Peng Institution: pengjiaqian@iie.ac.cn Vulnerability Description A Command Injection vulnerability was found in the Belkin router with firmware version 1.00.33, allowing remote attackers to execute arbitrary OS commands via a crafted request. Remote Command Execution In the binary: The function directly passes the parameter from the attacker, enabling control over the command execution on the OS. The initial input is extracted and can cause command injection. PoC To exploit this vulnerability, set the as , and the router will execute it: Result The router responds with the result of the ping command: