CVE-2020-14095: Critical severity mi r3600 vulnerability
In Xiaomi router R3600, ROM version<1.0.20, a connect service suffers from an injection vulnerability through the web interface, leading to a stack overflow or remote code execution.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2020-14095?
CVE-2020-14095 is an injection vulnerability in Xiaomi router R3600 with ROM version<1.0.20, which can result in stack overflow or remote code execution through the web interface.
How does CVE-2020-14095 affect Xiaomi router R3600?
CVE-2020-14095 affects Xiaomi router R3600 with ROM version<1.0.20 by allowing an attacker to inject malicious code through the web interface, leading to a stack overflow or remote code execution.
What is the severity of CVE-2020-14095?
CVE-2020-14095 has a severity rating of 9.8 (Critical).
How can I fix CVE-2020-14095?
To fix CVE-2020-14095, update your Xiaomi router R3600 firmware to version 1.0.20 or above.
Where can I find more information about CVE-2020-14095?
You can find more information about CVE-2020-14095 at the following link: [CVE-2020-14095](https://privacy.mi.com/trust#/security/vulnerability-management/vulnerability-announcement/detail?id=18&locale=en)