First published: Mon Mar 07 2022(Updated: )
A command injection vulnerability exists in the Xiaomi Router AX3600. The vulnerability is caused by a lack of inspection for incoming data detection. Attackers can exploit this vulnerability to execute code.
Credit: security@xiaomi.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mi Ax3600 Firmware | <1.1.15 | |
Mi Ax3600 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of the Xiaomi Router AX3600 is CVE-2020-14111.
The vulnerability in the Xiaomi Router AX3600 is caused by a lack of inspection for incoming data detection.
Attackers can exploit this vulnerability to execute code.
The severity of CVE-2020-14111 is high with a CVSS score of 7.8.
To fix the vulnerability in the Xiaomi Router AX3600, it is recommended to update the firmware to version 1.1.15 or higher.