PT-2021-9690 · Xiaomi · Xiaomi Router Rm1800+1

Published

2021-01-13

·

Updated

2021-01-19

·

CVE-2020-14101

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Xiaomi router AX1800 rom versions prior to 1.0.336 Xiaomi router RM1800 root versions prior to 1.0.26
Description The issue is related to the data collection SDK in the router web management interface, which causes the leakage of the token.
Recommendations For Xiaomi router AX1800 rom versions prior to 1.0.336, update to version 1.0.336 or later. For Xiaomi router RM1800 root versions prior to 1.0.26, update to version 1.0.26 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2020-14101

Affected Products

Xiaomi Router Ax1800
Xiaomi Router Rm1800