CVE-2020-6842
D-Link DCH-M225 1.05b01 and earlier devices allow remote authenticated admins to execute arbitrary OS commands via shell metacharacters in the media renderer name.
Date published : 2020-02-21
https://supportannouncement.us.dlink.com/announcement/publication.aspx?name=SAP10152
https://gist.github.com/jezzaaa/9d704400a7e23f988dfb4f73658678b8