Diagnosis Controller miss parameter validation, so user may attacked by command injection via HTTP Request.