A command injection vulnerability in the EXE parameter of D-Link DSL-7740C with firmware DSL7740C.V6.TR069.20211230 allows attackers to execute arbitrary commands via supplying a crafted GET request.
https://www.dlink.com/en/security-bulletin/
https://gist.github.com/stevenyu113228/5cf73b94dd0f32a72f0b33b17429a423