Inspur ClusterEngine V4.0 is suscptible to a remote code execution vulnerability. A remote attacker can send a malicious login packet to the control server.
View the template here CVE-2020-21224.yaml
References:
https://github.com/ARPSyndicate/cvemon