Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown
CVE-2020-14099
Disclosure Date: April 08, 2021 (last updated February 22, 2025)
On Xiaomi router AX1800 rom version < 1.0.336 and RM1800 root version < 1.0.26, the encryption scheme for a user's backup files uses hard-coded keys, which can expose sensitive information such as a user's password.
0
Attacker Value
Unknown
CVE-2020-14102
Disclosure Date: January 13, 2021 (last updated February 22, 2025)
There is command injection when ddns processes the hostname, which causes the administrator user to obtain the root privilege of the router. This affects Xiaomi router AX1800rom version < 1.0.336 and Xiaomi route RM1800 root version < 1.0.26.
0
Attacker Value
Unknown
CVE-2020-14101
Disclosure Date: January 13, 2021 (last updated November 28, 2024)
The data collection SDK of the router web management interface caused the leakage of the token. This affects Xiaomi router AX1800rom version < 1.0.336 and Xiaomi route RM1800 root version < 1.0.26.
0
Attacker Value
Unknown
CVE-2020-14098
Disclosure Date: January 13, 2021 (last updated February 22, 2025)
The login verification can be bypassed by using the problem that the time is not synchronized after the router restarts. This affects Xiaomi router AX1800rom version < 1.0.336 and Xiaomi route RM1800 root version < 1.0.26.
0