CVE-2020-14140

CVE-2020-14140

When Xiaomi router firmware is updated in 2020, there is an unauthenticated API that can reveal WIFI password vulnerability. This vulnerability is caused by the lack of access control policies on some API interfaces. Attackers can exploit this vulnerability to enter the background and execute background command injection.

Source: CVE-2020-14140

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다