关键漏洞信息 Title: Adslr NBR1005GPEV2 250814-r037c Remote code execution Description: - This vulnerability originates from send_order.cgi, where the CGI-ELF retrieves parameters from requests and concatenates them into commands using the sprintf function without any filtering, allowing remote attackers to execute arbitrary commands without authorization through command separators. Source:  User: 2er00ne (UID 91682) Submission Date: 11/10/2025 04:58 AM (24 days ago) Moderation Date: 11/30/2025 02:58 PM (20 days later) Status: Accepted VulDB Entry: [](https://www.vuldb.com/?id.333811) [ADSRL NBR1005GPEV2 250814-r037c /send_order.cgi set_mesh_disconnect mac command injection] Points: 15