A vulnerability has been discovered in HFS 2.3 and earlier versions that allows sending CMD commands to the server to execute them.
Detail: https://asec.ahnlab.com/ko/74113/
This code is for educational purposes only, and legal responsibility for misuse lies with the user.