WFS-SR03 v1.0.3 exists to contain a command injection vulnerability via the sys_smb_pwdmod function.
iodata wfs-sr03w_firmware 1.03
iodata wfs-sr03k_firmware 1.03