← Back

Xiaomi R3600 Firmware

xiaomi_r3600_firmware

Vendor: Mi • 5 CVEs

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Mi
1Xiaomi R3600 Firmware
Nov 21, 2024
Jun 24, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
Xiaomi router R3600 ROM before 1.0.50 is affected by a sensitive information leakage caused by an insecure interface get_config_result without authentication
1Mi
1Xiaomi R3600 Firmware
Nov 21, 2024
Jun 24, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
Xiaomi router R3600 ROM before 1.0.50 is affected by a vulnerability when checking backup file in c_upload interface let attacker able to extract malicious file under any location in /tmp, lead to possible RCE and DoS
1Mi
1Xiaomi R3600 Firmware
Nov 21, 2024
Jun 24, 2020
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
An unsafe configuration of nginx lead to information leak in Xiaomi router R3600 ROM before 1.0.50.
1Mi
1Xiaomi R3600 Firmware
Nov 21, 2024
Jun 24, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
In Xiaomi router R3600, ROM version<1.0.20, a connect service suffers from an injection vulnerability through the web interface, leading to a stack overflow or remote code execution.
1Mi
1Xiaomi R3600 Firmware
Nov 21, 2024
Jun 24, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
In Xiaomi router R3600, ROM version<1.0.20, the connection service can be injected through the web interface, resulting in stack overflow or remote code execution.