VMware NSX SD-WAN Edge (formerly VeloCloud Edge) before 3.1.2 contains an unauthenticated command injection in the local web UI diagnostic tools (Ping/Traceroute). This template detects it reliably by injecting 'id', 'whoami', and a random marker.
id: CVE-2018-6961
info:
name: VMware NSX SD-WAN Edge - Command Injection
author: D3nverNg,thewi
...