CNNVD-202512-146 Information

CNNVD ID

CNNVD-202512-146

CVE-2025-13799

  • CNNVD Published: 2025-12-01

Description (Chinese)

ADSLR NBR1005GPEV2是中国飞鱼星(ADSLR)公司的一个无线路由器。 ADSLR NBR1005GPEV2 250814-r037c版本存在命令注入漏洞,该漏洞源于文件/send_order.cgi中参数mac的错误操作,可能导致命令注入。

Description (English)

ADSLR NBR 1005GPEV2 is a wireless router for the China Flying Fish Star (ADSLR). The ADSLR NBR 1005 GPEV 2 250814-r037c version contains a command-injecting loophole, which stems from the error of the paramac in the document/send order.cgi and may result in the command-injection.

Hazard Level

High

Vulnerability Type

命令注入

Affected Vendor

飞鱼星

Published

2025-12-01

Last Modified

2026-02-24

References

https://vuldb.com/?ctiid.333810 https://vuldb.com/?id.333810 https://vuldb.com/?submit.691842 https://www.notion.so/2a60c75766a8801e8e4bdd3be8072d9d

Share on: