PT-2021-9688 · Xiaomi · Xiaomi Router Rm1800+1

Published

2021-01-13

·

Updated

2021-01-19

·

CVE-2020-14098

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Xiaomi router AX1800 rom versions prior to 1.0.336 Xiaomi router RM1800 root versions prior to 1.0.26
Description The issue allows the login verification to be bypassed due to a problem with time synchronization after the router restarts.
Recommendations For Xiaomi router AX1800 rom versions prior to 1.0.336, update to version 1.0.336 or later. For Xiaomi router RM1800 root versions prior to 1.0.26, update to version 1.0.26 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-14098

Affected Products

Xiaomi Router Ax1800
Xiaomi Router Rm1800