Key Information about the Vulnerability from the Screenshot Vendor: TOTOLINK Affected Product: A7000R Affected Firmware Version: V4.1cu.4154 Vulnerability Type: Remote Code Execution (RCE) Vulnerability Trigger: - Route: - Specific Endpoint: - Method: HTTP POST request Vulnerability Details: - The function handles the request. - The parameter is directly passed to the function for command execution. - Code Snippet: Proof of Concept (POC): - HTTP POST request: - This POC attempts to list the contents of the root directory and store the output in .