5.3
/ 10
MEDIUM
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P
Description
A vulnerability was detected in ADSLR B-QE2W401 250814-r037c. Affected by this issue is the function parameterdel_swifimac of the file /send_order.cgi. Performing manipulation of the argument del_swifimac results in command injection. The attack is possible to be carried out remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Basic Information
ID
CVE-2025-13797
Source
VulDB
Published
Dec 1, 2025 at 00:02
Affected Product
Vendor
ADSLR
Product
B-QE2W401
Version
250814-r037c
Affected Versions
ADSLR B-QE2W401 250814-r037c