CVE-2020-14111: Command Injection
Published Mar 7, 2022
·Updated
A command injection vulnerability exists in the Xiaomi Router AX3600. The vulnerability is caused by a lack of inspection for incoming data detection. Attackers can exploit this vulnerability to execute code.
Affected Software
2 affected components
Mi Ax3600 Firmware<1.1.15
Mi AX3600
Event History
Mar 7, 2022
CVE Published
via MITRE·03:24 PM
Data Sourced
via MITRE·03:24 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the vulnerability ID of the Xiaomi Router AX3600?
The vulnerability ID of the Xiaomi Router AX3600 is CVE-2020-14111.
2
What is the cause of the vulnerability in the Xiaomi Router AX3600?
The vulnerability in the Xiaomi Router AX3600 is caused by a lack of inspection for incoming data detection.
3
What can attackers do with this vulnerability?
Attackers can exploit this vulnerability to execute code.
4
What is the severity of CVE-2020-14111?
The severity of CVE-2020-14111 is high with a CVSS score of 7.8.
5
How can I fix the vulnerability in the Xiaomi Router AX3600?
To fix the vulnerability in the Xiaomi Router AX3600, it is recommended to update the firmware to version 1.1.15 or higher.