Metrics
Affected Vendors & Products
Mon, 01 Dec 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 01 Dec 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Adslr
Adslr nbr1005gpev2 |
|
| Vendors & Products |
Adslr
Adslr nbr1005gpev2 |
Mon, 01 Dec 2025 01:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was found in ADSLR NBR1005GPEV2 250814-r037c. This issue affects the function set_mesh_disconnect of the file /send_order.cgi. The manipulation of the argument mac results in command injection. It is possible to launch the attack remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | ADSLR NBR1005GPEV2 send_order.cgi set_mesh_disconnect command injection | |
| Weaknesses | CWE-74 CWE-77 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2025-12-01T01:32:05.993Z
Updated: 2025-12-01T17:36:00.255Z
Reserved: 2025-11-30T13:58:37.562Z
Link: CVE-2025-13800
Updated: 2025-12-01T17:35:47.102Z
Status : Awaiting Analysis
Published: 2025-12-01T02:15:45.677
Modified: 2025-12-01T15:39:33.110
Link: CVE-2025-13800
No data.