ZeroHour

CVE-2020-14098

CVSS 3.1
7.5 high
EPSS
1%p67
Published
()
Modified
Description

The login verification can be bypassed by using the problem that the time is not synchronized after the router restarts. This affects Xiaomi router AX1800rom version < 1.0.336 and Xiaomi route RM1800 root version < 1.0.26.

Vendors
mi
Products
ax1800 firmware, rm1800 firmware
Weakness
CWE-662
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.