CVE-2020-10561: Command Injection
An issue was discovered on Xiaomi Mi Jia ink-jet printer < 3.4.60138. Injecting parameters to ippserver through the web management background, resulting in command execution vulnerabilities.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-10561?
CVE-2020-10561 is a vulnerability found in Xiaomi Mi Jia ink-jet printers with firmware versions below 3.4.6_0138.
How can a hacker exploit CVE-2020-10561?
A hacker can exploit CVE-2020-10561 by injecting parameters to ippserver through the web management background, resulting in command execution vulnerabilities.
What is the severity of CVE-2020-10561?
CVE-2020-10561 has a severity score of 9.8 out of 10, making it a critical vulnerability.
Which software versions are affected by CVE-2020-10561?
Xiaomi Mi Jia ink-jet printers firmware versions below 3.4.6_0138 are affected by CVE-2020-10561.
How can I fix CVE-2020-10561?
To fix CVE-2020-10561, it is recommended to update the firmware of the affected Xiaomi Mi Jia ink-jet printer to version 3.4.6_0138 or above.