VulnerabilityModified
CVE-2020-14112
Information Leak Vulnerability exists in the Xiaomi Router AX6000.
MEDIUM 5.3EPSS 0.78%
Does this matter?
Lower severity and a low EPSS score (0.78%). Track it; it rarely justifies an emergency change on its own.
Description
Information Leak Vulnerability exists in the Xiaomi Router AX6000. The vulnerability is caused by incorrect routing configuration. Attackers can exploit this vulnerability to download part of the files in Xiaomi Router AX6000.
- CVSS 3.1
- 5.3 MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
- EPSS
- 0.78% probability · 54th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-200
- Affected
- mi/ax6000 firmware
- Source
- security@xiaomi.com
References
- https://trust.mi.com/zh-CN/misrc/bulletins/advisory?cveId=34Vendor Advisory
- https://trust.mi.com/zh-CN/misrc/bulletins/advisory?cveId=34Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.