CNNVD-202512-142 Information

CNNVD ID

CNNVD-202512-142

CVE-2025-13800

  • CNNVD Published: 2025-12-01

Description (Chinese)

ADSLR NBR1005GPEV2是中国飞鱼星(ADSLR)公司的一个无线路由器。 ADSLR NBR1005GPEV2 250814-r037c版本存在命令注入漏洞,该漏洞源于文件/send_order.cgi中参数mac的错误操作,可能导致命令注入。

Description (English)

ADSLR NBR 1005GPEV2 is a wireless router for the China Flying Fish Star (ADSLR). The ADSLR NBR 1005 GPEV 2 250814-r037c version contains a command-injecting loophole, which stems from the error of the paramac in the document/send order.cgi and may result in the command-injection.

Hazard Level

High

Vulnerability Type

命令注入

Affected Vendor

飞鱼星

Published

2025-12-01

Last Modified

2026-02-24

References

https://vuldb.com/?ctiid.333811 https://vuldb.com/?id.333811 https://vuldb.com/?submit.691942 https://www.notion.so/2a70c75766a88023aa0ed833ff0239e1

Share on: